Security Advisory

CVE-2022-0863

7.2
HIGH

Vulnerability Description

The WP SVG Icons WordPress plugin through 3.2.3 does not properly validate uploaded custom icon packs, allowing an high privileged user like an admin to upload a zip file containing malicious php code, leading to remote code execution.
Published Date June 13, 2022
Official Source NIST NVD Advisory