Skip to content

PRP: PPOM (WordPress plugin) CVE-2025-11391 Arbitrary File Upload #750

@a3vX

Description

@a3vX

Hi,
This WordPress plugin (over 1 million downloads and 20K active installs) is vulnerable to unauthenticated remote code execution through a file upload vulnerability.
Is this something that you would be interested in?
Thanks!

--a3vX

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions