Critical 9.8
2025-05-09< 1.1.7
Drag and Drop Multiple File Upload for WooCommerce <= 1.1.6 - Unauthenticated Arbitrary File Upload via upload Function
Minimum safe version
1.1.7
Update to 1.1.7 or later to address 4 fixable vulnerabilities
Drag and Drop Multiple File Upload for WooCommerce <= 1.1.6 - Unauthenticated Arbitrary File Upload via upload Function
Drag and Drop Multiple File Upload for WooCommerce <= 1.1.4 - Unauthenticated Arbitrary File Move
CVE-2023-4821
CVE-2022-45377