Description
Unauthenticated Arbitrary File Download in Super Forms <= 6.3.315 versions.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Mon, 24 Aug 2026 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Unauthenticated Arbitrary File Download in Super Forms <= 6.3.315 versions. | |
| Title | WordPress Super Forms plugin <= 6.3.315 - Arbitrary File Download vulnerability | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-08-24T12:51:08.545Z
Reserved: 2026-02-25T12:14:34.738Z
Link: CVE-2026-28167
No data.
Status : Received
Published: 2026-08-24T12:16:50.850
Modified: 2026-08-24T12:16:50.850
Link: CVE-2026-28167
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')