CVE-2023-3664: Fileorganizer
High severity, CVSS 7.2. EPSS: 0.8% chance of exploitation in the next 30 days.
The FileOrganizer WordPress plugin through 1.0.2 does not restrict functionality on multisite instances, allowing site admins to gain full control over the server.
Affected products
- Fileorganizer Fileorganizer: up to and including 1.0.2
Published 2023-09-25. Last modified 2026-06-17.