Impact
A vulnerability was identified in the SurveyJS WordPress plugin, allowing users with non-administrative roles (e.g., subscribers) to remove files from the plugin's database by sending specific HTTP scripts.
Who is impacted?
All installations of the SurveyJS WordPress plugin where non-administrative user roles have access.
This issue could lead to unauthorized file deletions, impacting data integrity.
References
Pull Request #64 - Fix for unauthorized file removal vulnerability
Impact
A vulnerability was identified in the SurveyJS WordPress plugin, allowing users with non-administrative roles (e.g., subscribers) to remove files from the plugin's database by sending specific HTTP scripts.
Who is impacted?
All installations of the SurveyJS WordPress plugin where non-administrative user roles have access.
This issue could lead to unauthorized file deletions, impacting data integrity.
References
Pull Request #64 - Fix for unauthorized file removal vulnerability