
CVE-2021-47940 WordPress Plugin Download From Files version 1.48 and earlier contains an arbitrary file upload vulnerability that allows unauthenticated attackers to upload maliciou… https://www.cve.org/CVERecord?id=CVE-2021-47940
Post summary
The post announces CVE-2021-47940 as an arbitrary file upload flaw in the WordPress Plugin Download From Files, enabling unauthenticated file uploads, without any PoC, exploit code, or patch information.

