Vulnerabilities > Simple Press > High

DATE CVE VULNERABILITY TITLE RISK
2022-11-29 CVE-2022-4030 Path Traversal vulnerability in Simple-Press Simple:Press
The Simple:Press plugin for WordPress is vulnerable to Path Traversal in versions up to, and including, 6.8 via the 'file' parameter which can be manipulated during user avatar deletion.
network
low complexity
simple-press CWE-22
8.1