← WordPress Vulnerabilities
WordPress security by component

AR For WordPress

AR For WordPress is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Oct 28, 2024; the highest published CVSS base score is 10.

Plugin slug: ar

CVE-2024-50496: AR For WordPress: Dangerous file upload

AR For WordPress is affected by dangerous file upload. Exposure depends on how the affected operation is made reachable by the site. Successful exploitation can place attacker-controlled executable content on the server and may lead to full site compromise. The public source does not disclose the vulnerable endpoint, action, parameter or function, so the precise input path remains unknown.

PublishedOct 28, 2024
Safe version guidanceSee mitigation notes
Published vulnerabilities for ar
Safe version
Oct 28, 2024 CVE-2024-50496
AR For WordPress: Dangerous file upload
AR For WordPress is affected by dangerous file upload. Exposure depends on how the affected operation is made reachable by the site. Successful exploitation can place attacker-controlled executable content on the server and may lead to full site compromise. The public source does not disclose the vulnerable endpoint, action, parameter or function, so the precise input path remains unknown.
See mitigation notes
CVE10.0
NVD10.0