CVE-2023-5355: Getawesomesupport Awesome Support
High severity, CVSS 8.1. EPSS: 0.7% chance of exploitation in the next 30 days.
The Awesome Support WordPress plugin before 6.1.5 does not sanitize file paths when deleting temporary attachment files, allowing a ticket submitter to delete arbitrary files on the server.
Affected products
- Getawesomesupport Awesome Support: before 6.1.5 (fixed in 6.1.5)
Published 2023-11-06. Last modified 2026-06-17.