HIGH
WordPress JupiterX theme <= 3.0.0 - Auth. Local File Inclusion vulnerability
Published May 17, 2024
8.8
HIGHCVSS 3.1
EPSS 0.81%
Description
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in artbees JupiterX allows PHP Local File Inclusion.This issue affects JupiterX: from n/a through 3.0.0.
Affected products
-
- Version -StatusaffectedConstraints<=3.0.0
- Version
-
- Version -StatusaffectedConstraints<=3.0.0
- Version
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
Vendor solution
Update to 3.1.0 or a higher version.
Weaknesses (1)
References (1)
- https://patchstack.com/database/vulnerability/jupiterx/wordpress-jupiterx-theme-3-0-0-subscriber-local-file-inclusion-vulnerability?_s_id=cve vdb-entryThird Party Advisory
| Link | Providers | Tags |
|---|---|---|
| https://patchstack.com/database/vulnerability/jupiterx/wordpress-jupiterx-theme-3-0-0-subscriber-local-file-inclusion-vulnerability?_s_id=cve | vdb-entryThird Party Advisory |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner Patchstack
Published May 17, 2024
Updated Apr 28, 2026
Reserved May 3, 2023
Link CVE-2023-32110
CISA Vulnrichment
Updated May 17, 2024