
CVE-2025-15487 The Code Explorer plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 1.4.6 via the 'file' parameter. This makes it possible fo… https://www.cve.org/CVERecord?id=CVE-2025-15487
Post summary
The Code Explorer WordPress plugin (v1.4.6 and earlier) has a path traversal flaw exposed through the 'file' parameter, as recorded in CVE-2025-15487.

