CyberRota Analysis
AI-GeneratedThe Advanced Product Fields Extended for WooCommerce versions up to 3.1.6 are vulnerable to unauthenticated arbitrary file deletion, allowing attackers to delete files on the server without authentication. This could lead to significant disruption of services and potential data loss for affected e-commerce sites. Organizations using these versions should prioritize patching to mitigate the risk of exploitation.
Original NVD Description
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Studio Wombat Advanced Product Fields Extended for WooCommerce allows Path Traversal. This issue affects Advanced Product Fields Extended for WooCommerce: from n/a through 3.1.6.