Known vulnerabilities in File Upload Types by WPForms
Easily allow WordPress to accept and upload any file type extension or MIME type, including custom file types.
1Reported vulnerabilities
6.4Highest CVSS score
1.5.0Latest version
40,000+Active installs
What to do now
Update File Upload Types by WPForms to 1.5.0 or later.
1 of these have a fixed version available. Updating resolves them.
Reported vulnerabilities
| CVE | Severity | Exploit probability |
Affected versions | Fixed in | Published |
|---|---|---|---|---|---|
| CVE-2024-10016 | Medium | 0.4% | 0 to 1.4.0 (inclusive) | 1.5.0 |
October 25, 2024 |