Skip to content

CVE-2024-58348

CVE

Threat entity extracted from intelligence sources

Frequency
1
occurrences
First Seen
June 8, 2026
Last Seen
June 8, 2026
API
Exploited in Wild
Ransomware Use
Public Exploits
Attack Vector

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

On June 8, 2026, three critical remote code execution vulnerabilities were disclosed affecting WordPress plugins. CVE-2024-58348 in the Background Image Cropper plugin allows unauthenticated file uploads via the ups.php endpoint, enabling arbitrary code execution. CVE-2023-54350 in the Augmented-Rea...

Public Exploits

Checking GitHub for proof-of-concept code…