Medium severity4.3NVD Advisory· Published Oct 17, 2022· Updated Jun 17, 2026
CVE-2022-3282
CVE-2022-3282
Description
The Drag and Drop Multiple File Upload WordPress plugin before 1.3.6.5 does not properly check for the upload size limit set in forms, taking the value from user input sent when submitting the form. As a result, attackers could control the file length limit and bypass the limit set by admins in the contact form.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: <1.3.6.5
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/035dffef-4b4b-4afb-9776-7f6c5e56452cnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.