POC - Remote and unauthenticated attacker can send crafted HTTP requests to RCE - cve-2025-3248
PreviousPOC - WordPress File Upload plugin, in the wfu_file_downloader.php file before version <= 4.24.11NextPOC - CVE-2025–2539 File Away <= 3.9.9.0.1 - Missing Authorization to Unauthenticated Arbitrary File
Last updated

