First published: Fri Nov 01 2024(Updated: )
Missing Authorization vulnerability in ShortPixel – Convert WebP/AVIF & Optimize Images ShortPixel Image Optimizer allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects ShortPixel Image Optimizer: from n/a through 5.6.3.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
ShortPixel Image Optimizer | <5.6.4 |
Update to 5.6.4 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-48044 is classified as a medium severity vulnerability due to missing authorization in ShortPixel Image Optimizer.
To fix CVE-2024-48044, update the ShortPixel Image Optimizer plugin to version 5.6.4 or later.
CVE-2024-48044 affects all versions of ShortPixel Image Optimizer from n/a through 5.6.3.
CVE-2024-48044 is a missing authorization vulnerability that enables exploitation of incorrectly configured access control.
Users of the ShortPixel Image Optimizer plugin for WordPress versions 5.6.3 and earlier are affected by CVE-2024-48044.