GHSA-7hfx-87f9-p7x4CriticalCVSS 9.9
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in...
🔗 CVE IDs covered (1)
📋 Description
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Ludwig You QuickWebP – Compress / Optimize Images & Convert WebP | SEO Friendly quickwebp allows Path Traversal.This issue affects QuickWebP – Compress / Optimize Images & Convert WebP | SEO Friendly: from n/a through <= 3.2.7.
🔗 References (3)
- https://nvd.nist.gov/vuln/detail/CVE-2026-42756
- https://patchstack.com/database/Wordpress/Plugin/quickwebp/vulnerability/wordpress-quickwebp-compress-optimize-images-convert-webp-seo-friendly-plugin-3-2-7-arbitrary-file-deletion-vulnerability?_s_id=cve
- https://github.com/advisories/GHSA-7hfx-87f9-p7x4