CVE-2026-15932
Support Genix Lite < 1.4.48 - Unauthenticated Arbitrary File Read via Path Traversal
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
The Support Genix WordPress plugin before 1.4.48 does not prevent directory traversal in its ticket-attachment download route, allowing unauthenticated attackers to read arbitrary files with an allowlisted extension โ including other users' private ticket attachments โ from the server.
| Vendor | unknown |
| Product | support genix |
| Published | Aug 1, 2026 |
Stay Ahead of the Next One
Get instant alerts for unknown support genix
Be the first to know when new unknown vulnerabilities affecting unknown support genix are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Unknown / Support Genix
0 < 1.4.48
References
Credits
Artus KG WPScan