GoUrl.io GoURL Wordpress Plugin 1.4.13 and earlier is affected by: CWE-434. The impact is: unauthenticated/unzuthorized Attacker can upload executable file in website. The component is: gourl.php#L5637. The fixed version is: 1.4.14.
{
"source": "CPE_RANGE",
"cpe": "cpe:2.3:a:gorul:gourl:*:*:*:*:*:wordpress:*:*",
"extracted_events": [
{
"introduced": "0"
},
{
"last_affected": "1.4.13"
}
]
}