WordPress Plugin Vulnerabilities

Bit Form < 3.1.0 - Unauthenticated Arbitrary File Read via Path Traversal

Description

The plugin does not restrict a form file-field value to a safe path before reading the file and attaching it to a notification email, allowing unauthenticated attackers to read arbitrary server files such as the WordPress configuration file.

Proof of Concept

Affects Plugins

Fixed in 3.1.0

References

Classification

Type
TRAVERSAL
OWASP top 10
CWE

Miscellaneous

Original Researcher
Davud Sahibzada
Submitter
Davud Sahibzada
Verified
Yes

Timeline

Publicly Published
2026-06-30 (about 22 days ago)
Added
2026-06-30 (about 22 days ago)
Last Updated
2026-06-30 (about 22 days ago)

Other