VYPR

Iptanus File Upload

by WordPress

CVEs (1)

  • CVE-2025-15546Jun 14, 2026
    risk 0.00cvss epss

    The Iptanus File Upload WordPress plugin before 5.1.7 does not implement proper file handling when the duplicatepolicy setting is configured to "maintain both." Due to a Time-of-Check to Time-of-Use (TOCTOU) race condition between the file existence check and the actual file…