Unrestricted Upload of File with Dangerous Type vulnerability in CreedAlly Bulk Featured Image allows Upload a Web Shell to a Web Server. This issue affects Bulk Featured Image: from n/a through 1.2.2.
Metrics
Affected Vendors & Products
References
History
Fri, 05 Sep 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 05 Sep 2025 14:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Unrestricted Upload of File with Dangerous Type vulnerability in CreedAlly Bulk Featured Image allows Upload a Web Shell to a Web Server. This issue affects Bulk Featured Image: from n/a through 1.2.2. | |
Title | WordPress Bulk Featured Image Plugin <= 1.2.2 - Arbitrary File Upload Vulnerability | |
Weaknesses | CWE-434 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Patchstack
Published: 2025-09-05T13:45:18.000Z
Updated: 2025-09-05T15:47:31.850Z
Reserved: 2025-09-05T10:49:25.892Z
Link: CVE-2025-58819

Updated: 2025-09-05T15:47:22.569Z

Status : Awaiting Analysis
Published: 2025-09-05T14:15:53.233
Modified: 2025-09-05T17:47:10.303
Link: CVE-2025-58819

No data.