Wishlist Member Arbitrary File Read via Directory Travesal <= 3.25.1
-
Updated
Oct 11, 2025 - Python
Wishlist Member Arbitrary File Read via Directory Travesal <= 3.25.1
Analysis of an Unauthenticated Arbitrary File Write vulnerability in Wishlist Member plugin (<=3.25.1) with potential RCE. Educational and responsible disclosure report.
Add a description, image, and links to the wishlist-member topic page so that developers can more easily learn about it.
To associate your repository with the wishlist-member topic, visit your repo's landing page and select "manage topics."