Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

WordPress Plugin PHP Malicious File Upload Vulnerability Allows Unauthorized File Uploads

MINI-jhfm-49h6-3856
Summary

A security issue in a popular WordPress plugin allows attackers to upload malicious files to a website, potentially leading to unauthorized code execution. This could compromise the security of the website and its users. Website administrators should update the affected plugin to the latest version to prevent exploitation.

What to do
  • Update openclaw to version 2026.3.7-r0.
Affected software
VendorProductAffected versionsFix available
– openclaw <= 2026.3.7-r0 2026.3.7-r0
Original title
MINI-jhfm-49h6-3856
Published: 8 Mar 2026 · Updated: 13 Mar 2026 · First seen: 8 Mar 2026