Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

WordPress Plugin 'WP GDPR Compliance' Allows Unauthenticated File Upload

MINI-c49q-f33g-wqf8
Summary

A security weakness in the WP GDPR Compliance plugin for WordPress allows someone to upload files without being logged in, which could lead to unauthorized data being uploaded to your website. This could potentially allow an attacker to inject malicious code or steal sensitive information. To fix this, update the plugin to the latest version or remove it if you don't need it.

Original title
MINI-c49q-f33g-wqf8
Published: 10 Mar 2026 · Updated: 13 Mar 2026 · First seen: 10 Mar 2026