← WordPress Vulnerabilities
WordPress security by component

Swfupload

Swfupload is a WordPress component with 2 published CVE records in this archive. The latest tracked vulnerability was published Jun 30, 2022; the highest CVE/CNA score is 9.8.

Plugin slug: swfupload

CVE-2013-4144: Swfupload: A security weakness

Swfupload is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.

PublishedJun 30, 2022
Safe version guidanceSee mitigation notes
Safe version
Jun 30, 2022 CVE-2013-4144
Swfupload: A security weakness
Swfupload is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE9.8
NVD9.8
Jul 19, 2013 CVE-2012-3414
Swfupload: Cross-site scripting
Swfupload is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
See mitigation notes
CVE4.3
NVD4.3