CVE-2022-36386

Severity CVSS v4.0:
Pending analysis
Type:
CWE-434 Unrestricted Upload of File with Dangerous Type
Publication date:
21/09/2022
Last modified:
20/02/2025

Description

Authenticated Arbitrary Code Execution vulnerability in Soflyy Import any XML or CSV File to WordPress plugin

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:soflyy:wp_all_import:*:*:*:*:*:wordpress:*:* 3.6.7 (including)