← Back to CVE List
CVE-2022-2357
The WSM Downloader WordPress plugin through 1.4.0 allows any visitor to use its remote file download feature to download any local files, including sensitive ones like wp-config.php.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt