System running
Last check: 2026-09-29 04:30:34 | Auto-updates every hour
756 PoCs
CybersecPlayground | The ultimate platform for cybersecurity learning & Bug Bounty Resources

CVE-CVE-2026-12513

Severity
MEDIUM
CVSS Score
6.8
Description

The Shared Files WordPress plugin before 1.7.67, shared-files-pro WordPress plugin before 1.7.68 do not properly sanitize a file path taken from a frontend file submission and their single-pass traversal filter is bypassable, allowing unauthenticated users to store a path that points outside the uploads directory. When the corresponding file entry is later permanently deleted, an arbitrary file on the server (such as wp-config.php) is deleted, leading to denial of service and potential site tak...

PoCs for CVE-CVE-2026-12513

CVE-2026-12513
General 0
MinhHK68 2026-08-30
Master Cybersecurity | Join CybersecPlayground for Cybersecurity Learning & Bug Bounty Resources