VYPR

Imagemagick

by WordPress

CVEs (1)

  • CVE-2024-6486HigMay 15, 2025
    risk 0.47cvss 7.2epss 0.02

    The ImageMagick Engine ImageMagick Engine WordPress plugin before 1.7.11 for WordPress is vulnerable to OS Command Injection via the "cli_path" parameter. This allows authenticated attackers, with administrator-level permission to execute arbitrary OS commands on the server…