Vulnerabilities > Delete ALL Comments Project

DATE CVE VULNERABILITY TITLE RISK
2023-06-07 CVE-2016-15033 Unrestricted Upload of File with Dangerous Type vulnerability in Delete ALL Comments Project Delete ALL Comments
The Delete All Comments plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the via the delete-all-comments.php file in versions up to, and including, 2.0.
network
low complexity
delete-all-comments-project CWE-434
critical
9.8