The Drag and Drop Multiple File Upload for Contact Form 7 plugin up to version 1.3.9.2 is vulnerable to an unauthorized data modification issue. This vulnerability allows unauthenticated attackers to delete uploaded files due to a missing ownership check when the 'Send attachments as links' option is enabled.
We use cookies to enhance your browsing experience, serve personalized ads or content, and analyze our traffic. By clicking "Accept All", you consent to our use of cookies.