plugin

Xserver Migrator Vulnerabilities

1 known security issue reported for the Xserver Migrator WordPress plugin. Most recent disclosed Apr 29, 2024.

1 high

Running Xserver Migrator on your site? Check whether your installed version is affected.

Scan your site free

Xserver Migrator <= 1.6.2 - Cross-Site Request Forgery to Arbitrary File Upload

high

The Xserver Migrator plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.6.2. This is due to missing or incorrect nonce validation on an unknown function. This makes it possible for unauthenticated attackers to upload arbitrary files granted they can trick a site adm...

CVSS:
8.8
Affected:
up to 1.6.2
Fixed in:
1.6.2.1
Disclosed:
Apr 29, 2024

CVE-2024-33913 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database