CVE-2022-4063 Information
Dec 20, 2022
cve
Description
The InPost Gallery WordPress plugin before 2.1.4.1 insecurely uses PHP’s extract() function when rendering HTML views allowing attackers to force the inclusion of malicious files & URLs which may enable them to run code on servers.
Reference
https://wpscan.com/vulnerability/6bb07ec1-f1aa-4f4b-9717-c92f651a90a7
Share on: