📦 Sirv

by Sirv

🔍 What is Sirv?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-5853

CRITICAL CVSS 9.9 Jun 19, 2024

The Sirv WordPress plugin (versions up to 7.2.6) allows authenticated attackers with Contributor-level access or higher to upload arbitrary files due to missing file type validation. This vulnerabilit...

CVE-2024-10855

HIGH CVSS 8.1 Nov 20, 2024

This vulnerability in the Sirv WordPress plugin allows authenticated attackers with Contributor-level access or higher to delete arbitrary WordPress option values. This can be exploited to cause denia...

CVE-2024-8964

MEDIUM CVSS 6.4 Oct 8, 2024

The Sirv WordPress plugin versions up to 7.2.9 have a stored XSS vulnerability in SVG file uploads. Authenticated attackers with Author privileges or higher can inject malicious scripts that execute w...

CVE-2024-6392

MEDIUM CVSS 5.4 Jul 11, 2024

The Sirv WordPress plugin has a missing capability check vulnerability that allows authenticated users with Subscriber-level access or higher to modify plugin settings. Attackers can change the connec...