CVE-2024-30500: Cubewp

High severity, CVSS 8.8. EPSS: 0.6% chance of exploitation in the next 30 days.

Unrestricted Upload of File with Dangerous Type vulnerability in CubeWP CubeWP – All-in-One Dynamic Content Framework.This issue affects CubeWP – All-in-One Dynamic Content Framework: from n/a through 1.1.12.

Affected products

  • Cubewp Cubewp: before 1.1.13 (fixed in 1.1.13)

Published 2024-03-29. Last modified 2026-06-17.