CVE-2026-14490 | deveasel Demi Plugin up to 0.0.7 on WordPress AJAX CleanDir::execute path traversal
A vulnerability identified as critical has been detected in deveasel Demi Plugin up to 0.0.7 on WordPress. Affected by this issue is the function CleanDir::execute of the component AJAX Handler. This manipulation causes path traversal.
This vulnerability is handled as CVE-2026-14490. The attack can be initiated remotely. There is not any exploit available.VulDB Recent EntriesRead More