Unrated severityNVD Advisory· Published Apr 23, 2024· Updated Nov 18, 2024
CVE-2024-28890
CVE-2024-28890
Description
Forminator prior to 1.29.0 contains an unrestricted upload of file with dangerous type vulnerability. If this vulnerability is exploited, a remote attacker may obtain sensitive information by accessing files on the server, alter the site that uses the plugin, and cause a denial-of-service (DoS) condition.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- WPMU DEV/Forminatorv5Range: prior to 1.29.0
Patches
Vulnerability mechanics
References
3News mentions
0No linked articles in our index yet.