Vulnerability Details: Authenticated Arbitrary File Upload in Advanced uploader
As is often the case, Automattic’s WPScan got things wrong with a report on an authenticated arbitrary file upload vulnerability (which they labeled as a subscriber+ arbitrary file upload vulnerability) in Advanced uploader. Their report state this:
…