Add From Server <= 3.3.1 - Cross-Site Request Forgery
highThe add-from-server plugin before 3.3.2 for WordPress has CSRF for importing a large file.
- CVSS:
- 8.8
- Affected:
- up to 3.3.2
- Fixed in:
- 3.3.2
- Disclosed:
- Aug 8, 2016
plugin
1 known security issue reported for the Add From Server WordPress plugin. Most recent disclosed Aug 8, 2016.
Running Add From Server on your site? Check whether your installed version is affected.
Scan your site freeThe add-from-server plugin before 3.3.2 for WordPress has CSRF for importing a large file.
Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.
Scan your site free