Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-28087 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in add-ons.org Drag and Drop File Upload for Elementor Forms allows Path Traversal. This issue affects Drag and Drop File Upload for Elementor Forms: from n/a through 1.4.3. |
Solution
Update the WordPress Drag and Drop File Upload for Elementor Forms plugin to the latest available version (at least 1.5.0).
Workaround
No workaround given by the vendor.
Fri, 23 May 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 23 May 2025 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in add-ons.org Drag and Drop File Upload for Elementor Forms allows Path Traversal. This issue affects Drag and Drop File Upload for Elementor Forms: from n/a through 1.4.3. | |
| Title | WordPress Drag and Drop File Upload for Elementor Forms <= 1.4.3 - Arbitrary File Deletion Vulnerability | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-05-23T14:58:56.512Z
Reserved: 2025-05-07T09:39:15.825Z
Link: CVE-2025-47492
Updated: 2025-05-23T14:58:53.865Z
Status : Awaiting Analysis
Published: 2025-05-23T13:15:38.297
Modified: 2025-05-23T15:54:42.643
Link: CVE-2025-47492
No data.
OpenCVE Enrichment
No data.
EUVD