CVE-2026-101889

CVE-2026-101889 published: The Prime Mover plugin for WordPress before 2.2.1 contains a path traversal vulnerability that allows authenticated administrators to delete arbitrary directories by importing a crafted WPRIME/TAR package with manipulated tar_root_folder values in wprime-co...

View full NVD advisory → ← Back to CVE watch