WordPress WP Cloud Plugin Path Traversal Vulnerability Allowing Arbitrary File Deletion
Vulnerability
A path traversal vulnerability has been identified in the WordPress WP Cloud plugin, specifically in versions through 1.4.3. This vulnerability allows for absolute path traversal, enabling unauthorized access to files on the server.
Impact
Exploitation of this vulnerability could lead to arbitrary file deletion on the affected WordPress site. Deleting core files could disrupt the site's functionality, causing it to break or stop working altogether.
Remediation
Users of the WordPress WP Cloud plugin are advised to update to version 1.4.4 or later, where this vulnerability has been addressed.
Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM
Vulnerability Rating
Custom Algorithm
spread
0.0impact
2.5exploitability
7.4remediation
0.0relevance
0.0threat
0.0urgency
2.9incentive
5.8Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
