Security Advisory

CVE-2021-24311

8.8
HIGH

Vulnerability Description

The wp_ajax_upload-remote-file AJAX action of the External Media WordPress plugin before 1.0.34 was vulnerable to arbitrary file uploads via any authenticated users.
Published Date June 1, 2021
Official Source NIST NVD Advisory