📦 Droip

by Themeum

🔍 What is Droip?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-43955

CRITICAL CVSS 10.0 Aug 29, 2024

CVE-2024-43955 is an unauthenticated path traversal vulnerability in the Droip WordPress plugin that allows attackers to download or delete arbitrary files on affected systems. This affects all Droip ...

CVE-2025-5831

HIGH CVSS 8.8 Jul 25, 2025

The Droip WordPress plugin allows authenticated attackers with Subscriber-level access or higher to upload arbitrary files due to missing file type validation. This vulnerability can lead to remote co...

CVE-2024-43954

MEDIUM CVSS 6.3 Aug 29, 2024

This CVE describes an incorrect authorization vulnerability in the Themeum Droip WordPress plugin that allows users with lower privileges (like subscribers) to access functionality intended only for a...