First published: Tue Dec 26 2023(Updated: )
The WP Mail Log WordPress plugin before 1.1.3 does not properly validate file path parameters when attaching files to emails, leading to local file inclusion, and allowing an attacker to leak the contents of arbitrary files.
Credit: contact@wpscan.com
Affected Software | Affected Version | How to fix |
---|---|---|
Wpvibes Wp Mail Log | <1.1.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.