Media Sync <= 1.4.9 - Authenticated (Author+) Path Traversal via 'sub_dir' and 'media_items' Parameters
mediumThe Media Sync plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 1.4.9 via the 'sub_dir' and 'media_items' parameters. This is due to insufficient validation of user-supplied file paths, which are not checked for directory traversal sequences or restricted to the intended upload...
- CVSS:
- 6.5
- Affected:
- up to 1.4.9
- Fixed in:
- 1.5.0
- Disclosed:
- May 13, 2026