Description
WordPress Plugin DM Albums is prone to a remote file disclosure vulnerability because it fails to sufficiently sanitize user-supplied input data. Exploiting the issue may allow an attacker to obtain sensitive information that could aid in further attacks. WordPress Plugin DM Albums version 1.9.2 is vulnerable; other versions may also be affected.
Remediation
Update to the latest version
References
Related Vulnerabilities
WordPress Plugin Ninja Forms with File Uploads Extension Multiple Vulnerabilities (3.0.22)
WordPress Plugin Smart Slider 3 PRO Cross-Site Scripting (3.5.0.8)
WordPress Plugin Calendar Event Multi View Cross-Site Scripting (1.3.99)
PrestaShop Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2018-19126)