CVE-2024-48044: WordPress ShortPixel Image Optimizer plugin <= 5.6.3 - Broken Access Control vulnerability
Missing Authorization vulnerability in ShortPixel ShortPixel Image Optimizer shortpixel-image-optimiser allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects ShortPixel Image Optimizer: from n/a through <= 5.6.3.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-48044?
CVE-2024-48044 is classified as a medium severity vulnerability due to missing authorization in ShortPixel Image Optimizer.
How do I fix CVE-2024-48044?
To fix CVE-2024-48044, update the ShortPixel Image Optimizer plugin to version 5.6.4 or later.
What software versions are affected by CVE-2024-48044?
CVE-2024-48044 affects all versions of ShortPixel Image Optimizer from n/a through 5.6.3.
What type of vulnerability is CVE-2024-48044?
CVE-2024-48044 is a missing authorization vulnerability that enables exploitation of incorrectly configured access control.
Who is affected by CVE-2024-48044?
Users of the ShortPixel Image Optimizer plugin for WordPress versions 5.6.3 and earlier are affected by CVE-2024-48044.