CVE-2023-24416

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Arne Franken All In One Favicon.This issue affects All In One Favicon: from n/a through 4.7.
Configurations

Configuration 1 (hide)

cpe:2.3:a:grimmdude:all_in_one_favicon:*:*:*:*:*:wordpress:*:*

History

28 Apr 2026, 19:19

Type Values Removed Values Added
References () https://patchstack.com/database/vulnerability/all-in-one-favicon/wordpress-all-in-one-favicon-plugin-4-7-arbitrary-file-deletion-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/all-in-one-favicon/wordpress-all-in-one-favicon-plugin-4-7-arbitrary-file-deletion-vulnerability?_s_id=cve - Third Party Advisory
Summary (en) Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Arne Franken All In One Favicon.This issue affects All In One Favicon: from n/a through 4.7. (en) Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Arne Franken All In One Favicon.This issue affects All In One Favicon: from n/a through 4.7.
First Time Grimmdude all In One Favicon
Grimmdude
CPE cpe:2.3:a:grimmdude:all_in_one_favicon:*:*:*:*:*:wordpress:*:*

21 Nov 2024, 07:47

Type Values Removed Values Added
References () https://patchstack.com/database/vulnerability/all-in-one-favicon/wordpress-all-in-one-favicon-plugin-4-7-arbitrary-file-deletion-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/all-in-one-favicon/wordpress-all-in-one-favicon-plugin-4-7-arbitrary-file-deletion-vulnerability?_s_id=cve -

23 Feb 2024, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-23 12:15

Updated : 2026-04-28 19:19


NVD link : CVE-2023-24416

Mitre link : CVE-2023-24416

CVE.ORG link : CVE-2023-24416


JSON object : View

Products Affected

grimmdude

  • all_in_one_favicon
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')