High 7.5
2025-08-05< 3.9.30
WP Import Export Lite <= 3.9.29 - Authenticated (Subscriber+) Arbitrary File Upload
Minimum safe version
3.9.30
Update to 3.9.30 or later to address 7 fixable vulnerabilities
WP Import Export Lite <= 3.9.29 - Authenticated (Subscriber+) Arbitrary File Upload
WP Import Export Lite <= 3.9.28 - Authenticated (Subscriber+) Arbitrary File Upload
WordPress WP Import Export Lite Plugin <= 3.9.27 is vulnerable to Cross Site Scripting (XSS)
CVE-2024-31308
WP Import Export Lite < 3.9.5 - Subscriber+ Extensions Update
WP Import Export Lite < 3.9.5 - Subscriber+ Arbitrary Blog Options Update
CVE-2022-0236