CVE-2026-15965 | sadathimel MaxUpload Plugin up to 1.4.0 on WordPress handle_upload resumableFilename unrestricted upload (EUVD-2026-58837)

SecurityVulns

A vulnerability categorized as critical has been discovered in sadathimel MaxUpload Plugin up to 1.4.0 on WordPress. This impacts the function handle_upload. Such manipulation of the argument resumableFilename leads to unrestricted upload.

This vulnerability is documented as CVE-2026-15965. The attack can be executed remotely. There is not any exploit available.VulDB Recent EntriesRead More