Vulnerabilities (CVE)

Filtered by vendor Ymc-22 Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-6164 1 Ymc-22 1 Filter \& Grids 2024-08-22 N/A 9.8 CRITICAL
The Filter & Grids WordPress plugin before 2.8.33 is vulnerable to Local File Inclusion via the post_layout parameter. This makes it possible for an unauthenticated attacker to include and execute PHP files on the server, allowing the execution of any PHP code in those files.