CVE · High

CVE-2024-32680 — HUSKY – Products Filter for WooCommerce Professional [woocommerce-products-filter] < 1.3.5.3

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2024-32680 HUSKY – Products Filter for WooCommerce Professional [woocommerce-products-filter] < 1.3.5.3 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') High 8.8 < 1.3.5.3 1.3.5.3 2024-04-17

CVE-2024-32680

The HUSKY – Products Filter for WooCommerce plugin versions up to 1.3.5.2 contains a path traversal vulnerability combined with code injection flaws that enable attackers to upload malicious files and execute arbitrary code on affected systems. These weaknesses stem from insufficient restrictions on file path handling and inadequate controls over code generation. The vulnerabilities were remedied in version 1.3.5.3 and later.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.