VYPR
Unrated severityNVD Advisory· Published Jun 10, 2024· Updated Apr 28, 2026

WordPress BuddyPress Cover plugin <= 2.1.4.2 - Arbitrary File Upload vulnerability

CVE-2024-35746

Description

Unrestricted Upload of File with Dangerous Type vulnerability in Asghar Hatampoor BuddyPress Cover allows Code Injection.This issue affects BuddyPress Cover: from n/a through 2.1.4.2.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.