← WordPress Vulnerabilities
WordPress security by component

ajax-extend

ajax-extend is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Oct 16, 2024; the highest CVE/CNA score is 10.

Plugin slug: ajax-extend

CVE-2024-49254: ajax-extend: Code execution

ajax-extend is affected by code execution. Exposure depends on how the affected operation is made reachable by the site. Successful exploitation can run attacker-controlled code in the WordPress hosting account.

PublishedOct 16, 2024
Safe version guidanceSee mitigation notes
Safe version
Oct 16, 2024 CVE-2024-49254
ajax-extend: Code execution
ajax-extend is affected by code execution. Exposure depends on how the affected operation is made reachable by the site. Successful exploitation can run attacker-controlled code in the WordPress hosting account.
See mitigation notes
CVE10.0
NVDPending