5.3
CVSSv3

CVE-2024-11219

CVSSv4: NA | CVSSv3: 5.3 | CVSSv2: NA | VMScore: 630 | EPSS: 0.00231 | KEV: Not Included
Published: 27/11/2024 Updated: 27/11/2024

Vulnerability Summary

Path Traversal in Otter Blocks Plugin Exposes Sensitive Images

The Otter Blocks plugin for WordPress, used with the Gutenberg Editor, has a Path Traversal vulnerability in versions up to 3.0.6. This issue is found in the get_image function. Unauthenticated attackers can exploit this to see any image on the server, and these images might have sensitive information.