CVE-2023-6222: Quttera Web Malware Scanner

High severity, CVSS 7.2. EPSS: 1.1% chance of exploitation in the next 30 days.

IThe Quttera Web Malware Scanner WordPress plugin before 3.4.2.1 does not validate user input used in a path, which could allow users with an admin role to perform path traversal attacks

Affected products

  • Quttera Quttera Web Malware Scanner: before 3.4.2.1 (fixed in 3.4.2.1)

Published 2023-12-18. Last modified 2026-06-17.