CVE-2024-49256: Wpchill Htaccess File Editor

High severity, CVSS 8.8. EPSS: 0.4% chance of exploitation in the next 30 days.

Incorrect Authorization vulnerability in WP Chill Htaccess File Editor htaccess-file-editor allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Htaccess File Editor: from n/a through <= 1.0.18.

Affected products

  • Wpchill Htaccess File Editor: before 1.0.19 (fixed in 1.0.19)

Published 2024-11-01. Last modified 2026-06-17.