Vulnerabilities > Infiniteuploads

DATE CVE VULNERABILITY TITLE RISK
2024-09-07 CVE-2024-8538 Path Traversal vulnerability in Infiniteuploads BIG File Uploads
The Big File Uploads – Increase Maximum File Upload Size plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 2.1.2.
network
low complexity
infiniteuploads CWE-22
4.3
2023-11-22 CVE-2023-47792 Cross-Site Request Forgery (CSRF) vulnerability in Infiniteuploads BIG File Uploads
Cross-Site Request Forgery (CSRF) vulnerability in Infinite Uploads Big File Uploads – Increase Maximum File Upload Size plugin <= 2.1.1 versions.
network
low complexity
infiniteuploads CWE-352
8.8