Vulnerabilities > KAU Boys > Hello World

DATE CVE VULNERABILITY TITLE RISK
2024-10-01 CVE-2024-9224 Path Traversal vulnerability in Kau-Boys Hello World
The Hello World plugin for WordPress is vulnerable to Arbitrary File Reading in all versions up to, and including, 2.1.1 via the hello_world_lyric() function.
network
low complexity
kau-boys CWE-22
6.5