Critical 9.8
2025-07-22< 0.4.2.2
CVE-2012-10020
Minimum safe version
0.4.9
Update to 0.4.9 or later to address 10 fixable vulnerabilities
CVE-2012-10020
Foxypress 0.4.1.1-0.4.2.1 - Arbitrary File Upload
FoxyPress 0.4.2.5-0.4.2.8 - Multiple Vulnerabilities
FoxyPress < 0.4.2.6 - Arbitrary File Upload
FoxyPress <= 0.4.2.7 - Open Redirect
FoxyPress <= 0.4.9 - Cross-Site Request Forgery
FoxyPress <= 0.4.9 - SQL Injection
FoxyPress <= 0.4.2.1 - Arbitrary File Upload
FoxyPress <= 0.4.2.6 - Cross-Site Scripting
WordPress Foxypress Plugin 0.4.2.5 - Multiple Vulnerabilities
WordPress Generic Plugin 0.1 - Arbitrary File Upload
WordPress Foxypress Plugin 0.4.2.1 - Arbitrary Code Execution
WordPress Foxypress Plugin 0.4.1.1 - 0.4.2.1 - Arbitrary File Upload