Skip to main content
Loading…
    CVE-2024-5441 — The Modern Events Calendar plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the set_featured_image function in all versions up to, and including, 7.1 — CVE Database · The Intelligence Room