Unrestricted File Upload Vulnerability in Meow Apps Media File Renamer
CVE-2023-50897

9.1CRITICAL

Key Information:

Vendor

WordPress

Vendor
CVE Published:
5 January 2026

What is CVE-2023-50897?

The Media File Renamer plugin developed by Meow Apps has a vulnerability that allows users to upload files without proper verification, potentially leading to the inclusion of malicious files. This can result in unauthorized execution of code and compromise website security. The affected versions include Media File Renamer up to 5.7.7, making it essential for users to apply patches or updates to protect their systems.

Affected Version(s)

Media File Renamer <= 5.7.7

References

CVSS V3.1

Score:
9.1
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Taihei Shimamine | Patchstack Bug Bounty Program
.