plugin

Gerador De Certificados Devapps Vulnerabilities

1 known security issue reported for the Gerador De Certificados Devapps WordPress plugin. Most recent disclosed Apr 7, 2026.

1 high

Running Gerador De Certificados Devapps on your site? Check whether your installed version is affected.

Scan your site free

Gerador de Certificados – DevApps <= 1.3.6 - Authenticated (Administrator+) Arbitrary File Upload

high

The Gerador de Certificados – DevApps plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the moveUploadedFile() function in all versions up to, and including, 1.3.6. This makes it possible for authenticated attackers, with Administrator-level access and above, to upload...

CVSS:
7.2
Affected:
up to 1.3.6
Fix:
No patched version reported
Disclosed:
Apr 7, 2026

CVE-2026-4808 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database