Skip to main content
Loading…
    CVE-2024-11847 — The wp-svg-upload WordPress plugin through 1.0.0 does not sanitize SVG file contents, which enables users with at least the author role to SVG with malicious JavaScript to conduct Stored XSS attacks. — CVE Database · The Intelligence Room