PT-2021-16161 · WordPress · Images To Webp

·

CVE-2021-24644

·

Published

2021-11-23

·

Updated

2025-09-18

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Images to WebP WordPress plugin versions prior to 1.9
Description The issue concerns a Local File Inclusion problem due to insufficient validation or sanitization of the tab parameter before it is passed to the include() function.
Recommendations For versions prior to 1.9, update to version 1.9 or later to resolve the issue.

Exploit

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-24644

Affected Products

Images To Webp