CVE-2023-4460 | dmitrylitvinov Uploading SVG, WEBP and ICO Files Plugin up to 1.2.1 on WordPress SVG cross site scripting

A vulnerability classified as problematic has been found in dmitrylitvinov Uploading SVG, WEBP and ICO Files Plugin up to 1.2.1 on WordPress. This affects an unknown part of the component SVG Handler. The manipulation leads to cross site scripting.

This vulnerability is uniquely identified as CVE-2023-4460. It is possible to initiate the attack remotely. There is no exploit available.

CVE-2023-4460 | dmitrylitvinov Uploading SVG, WEBP and ICO Files Plugin up to 1.2.1 on WordPress SVG cross site scripting