WordPress Plugin Vulnerabilities

Word Count and Social Shares <= 1.0 - Subscriber+ Arbitrary File Deletion via Path Traversal

Description

The plugin does not validate a user-supplied file path before deletion, nor does it have proper authorization or CSRF checks, allowing any authenticated user, such as a Subscriber, to delete arbitrary files on the server, which can lead to a full site takeover (e.g. by deleting wp-config.php).

Proof of Concept

Affects Plugins

References

Classification

Type
FILE DELETION
CWE

Miscellaneous

Original Researcher
Muni Nitish Kumar Yaddala
Submitter
Muni Nitish Kumar Yaddala
Verified
Yes

Timeline

Publicly Published
2026-06-23 (about 2 months ago)
Added
2026-06-23 (about 2 months ago)
Last Updated
2026-09-15 (about 4 hours ago)

Other