CVE · High

CVE-2024-31300 — Easy Social Share Buttons [easy-social-share-buttons3] < 9.5

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2024-31300 Easy Social Share Buttons [easy-social-share-buttons3] < 9.5 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') High 8.5 < 9.5 9.5 2024-04-05

CVE-2024-31300

The Easy Social Share Buttons plugin in versions before 9.5 contains a local file inclusion vulnerability that allows attackers to access and display the contents of files stored on the affected website. This flaw could expose sensitive information such as database credentials, potentially leading to unauthorized database access depending on how the site is configured. The vulnerability was identified by Rafie Muhammad and addressed in version 9.5 and later.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.