Critical severity9.8NVD Advisory· Published Apr 5, 2021· Updated Jun 17, 2026
CVE-2021-24212
CVE-2021-24212
Description
The WooCommerce Help Scout WordPress plugin before 2.9.1 (https://woocommerce.com/products/woocommerce-help-scout/) allows unauthenticated users to upload any files to the site which by default will end up in wp-content/uploads/hstmp.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- WordPress/WooCommerce Help Scout plugindescription
- Range: <2.9.1
Patches
Vulnerability mechanics
References
2- wpscan.com/vulnerability/cf9305e8-f5bc-45c3-82db-0ef00fd46129nvdExploitThird Party Advisory
- dzv365zjfbd8v.cloudfront.net/changelogs/woocommerce-help-scout/changelog.txtnvdRelease NotesThird Party Advisory
News mentions
0No linked articles in our index yet.