PatchSiren

Gotmls CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Gotmls CVE published 2026-05-16

CVE-2021-47977

CVE-2021-47977 describes a high-severity directory traversal issue in the WordPress Plugin Anti-Malware Security and Bruteforce Firewall 4.20.59. According to the supplied record, an unauthenticated attacker can manipulate the file parameter in the duplicator_download action over admin-ajax.php to read arbitrary files outside the intended directory. The supplied CVSS v4.0 vector indicates a network-exploi [truncated]