CVE-2024-32830

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ThemeKraft BuddyForms allows Server Side Request Forgery, Relative Path Traversal.This issue affects BuddyForms: from n/a through 2.8.8.
Configurations

Configuration 1 (hide)

cpe:2.3:a:themekraft:buddyforms:*:*:*:*:*:wordpress:*:*

History

25 Nov 2025, 19:54

Type Values Removed Values Added
References () https://patchstack.com/database/vulnerability/buddyforms/wordpress-buddyforms-plugin-2-8-8-arbitrary-file-read-and-ssrf-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/buddyforms/wordpress-buddyforms-plugin-2-8-8-arbitrary-file-read-and-ssrf-vulnerability?_s_id=cve - Third Party Advisory, Patch
CPE cpe:2.3:a:themekraft:buddyforms:*:*:*:*:*:wordpress:*:*
First Time Themekraft
Themekraft buddyforms

Information

Published : 2024-05-17 10:15

Updated : 2025-11-25 19:54


NVD link : CVE-2024-32830

Mitre link : CVE-2024-32830

CVE.ORG link : CVE-2024-32830


JSON object : View

Products Affected

themekraft

  • buddyforms
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')