๐Ÿ” CVE Alert

CVE-2024-52390

UNKNOWN 0.0

WordPress CYAN Backup plugin <= 2.5.3 - Arbitrary File Download vulnerability

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Path Traversal: '.../...//' vulnerability in Greg Ross CYAN Backup cyan-backup allows Path Traversal.This issue affects CYAN Backup: from n/a through <= 2.5.3.

CWE CWE-35
Vendor greg ross
Product cyan backup
Published Nov 18, 2024
Last Updated Apr 1, 2026
Stay Ahead of the Next One

Get instant alerts for greg ross cyan backup

Be the first to know when new unknown vulnerabilities affecting greg ross cyan backup are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Greg Ross / CYAN Backup
0 โ‰ค 2.5.3

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
patchstack.com: https://patchstack.com/database/Wordpress/Plugin/cyan-backup/vulnerability/wordpress-cyan-backup-plugin-2-5-3-arbitrary-file-download-vulnerability?_s_id=cve

Credits

Junsu Yeo | Patchstack Bug Bounty Program