AVG-909

Package wordpress
Status Fixed
Severity High
Type directory traversal
Affected 5.0.3-1
Fixed 5.1-1
Current 5.2.3-1 [community]
Ticket None
Created Thu Feb 21 12:33:29 2019
Issue Severity Remote Type Description
CVE-2019-8943 High Yes Directory traversal
WordPress through 5.0.3 allows Path Traversal in wp_crop_image(). An attacker (who has privileges to crop an image) can write the output image to an...
Date Advisory Package Description
18 Mar 2019 ASA-201903-10 wordpress directory traversal