CVE Database
/

CVE-2021-24537

Back to search

CVE-2021-24537

Published: Nov 8, 2021

Modified: Aug 3, 2024

PUBLISHED

Description

The Similar Posts WordPress plugin through 3.1.5 allow high privilege users to execute arbitrary PHP code in an hardened environment (ie with DISALLOW_FILE_EDIT, DISALLOW_FILE_MODS and DISALLOW_UNFILTERED_HTML set to true) via the 'widget_rrm_similar_posts_condition' widget setting of the plugin.

VendorProductVersions

Unknown

Similar Posts – Best Related Posts Plugin for WordPress

affected
3.1.5 - <= 3.1.5

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now