← WordPress Vulnerabilities
WordPress security by component

admin-word-count-column

admin-word-count-column is a WordPress component with 2 published CVE records in this archive. The latest tracked vulnerability was published Jun 08, 2026; the highest CVE/CNA score is 9.8.

Plugin slug: admin-word-count-column

CVE-2022-50953: admin-word-count-column: Filesystem traversal

admin-word-count-column is affected by filesystem traversal. The vulnerable path is reachable without authentication. A crafted path can escape the intended directory and reach files or directories elsewhere on the server. The published affected range is 2.2.

PublishedJun 08, 2026
Safe version guidanceSee mitigation notes
Safe version
Jun 08, 2026 CVE-2022-50953
admin-word-count-column: Filesystem traversal
admin-word-count-column is affected by filesystem traversal. The vulnerable path is reachable without authentication. A crafted path can escape the intended directory and reach files or directories elsewhere on the server. The published affected range is 2.2.
See mitigation notes
CVE6.9
NVDPending
Apr 25, 2022 CVE-2022-1390
Admin Word Count Column: Code execution
Admin Word Count Column is affected by code execution. The vulnerable path is reachable without authentication. Successful exploitation can run attacker-controlled code in the WordPress hosting account.
See mitigation notes
CVE9.8
NVD9.8