NotFound Helloprint Path Traversal Vulnerability Allowing Arbitrary File Deletion

Vulnerability

A path traversal vulnerability has been identified in the NotFound Helloprint WordPress plugin, affecting versions through 2.0.7. This vulnerability allows for arbitrary file deletion, which could disrupt website functionality by removing essential core files.

Impact

Exploitation of this vulnerability could lead to the deletion of arbitrary files from the WordPress site, potentially including critical core files that could cause the site to malfunction or become unavailable.

Remediation

Users of the NotFound Helloprint WordPress plugin should update to version 2.1.0 or later to address this vulnerability. Patchstack users can enable auto-updates for vulnerable plugins.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
1.0
impact
2.5
exploitability
7.6
remediation
7.9
relevance
0.0
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.