Security Advisory

CVE-2024-6330

9.8
CRITICAL

Vulnerability Description

The GEO my WP WordPress plugin before 4.5.0.2 does not prevent unauthenticated attackers from including arbitrary files in PHP's execution context, which leads to Remote Code Execution.
Published Date August 19, 2024
Official Source NIST NVD Advisory