CVE-2024-38746 Information

Description

Improper Limitation of a Pathname to a Restricted Directory (‘Path Traversal’) vulnerability in MakeStories Team MakeStories (for Google Web Stories) allows Path Traversal Server Side Request Forgery.This issue affects MakeStories (for Google Web Stories): from n/a through 3.0.3.

Reference

https://patchstack.com/database/vulnerability/makestories-helper/wordpress-makestories-for-google-web-stories-plugin-3-0-3-arbitrary-file-download-and-ssrf-vulnerability?_s_id=cve

Share on: