Filtered by vendor Imagestowebp Project Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2021-24644 1 Imagestowebp Project 1 Images To Webp 2024-11-21 7.5 High
The Images to WebP WordPress plugin before 1.9 does not validate or sanitise the tab parameter before passing it to the include() function, which could lead to a Local File Inclusion issue
CVE-2021-24641 1 Imagestowebp Project 1 Images To Webp 2024-11-21 8.1 High
The Images to WebP WordPress plugin before 1.9 does not have CSRF checks in place when performing some administrative actions, which could result in modification of plugin settings, Denial-of-Service, as well as arbitrary image conversion