The Ninja Forms - File Uploads plugin for WordPress is affected by a vulnerability that allows arbitrary file uploads, which can lead to remote code execution. This flaw is present due to the lack of file type validation in the 'NF_FU_AJAX_Controllers_Uploads::handle_upload' function, impacting versions up to 3.3.26.
We use cookies to enhance your browsing experience, serve personalized ads or content, and analyze our traffic. By clicking "Accept All", you consent to our use of cookies.