PT-2026-2031 · WordPress · Templately

·

CVE-2026-0831

·

Published

2026-01-10

·

Updated

2026-01-10

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Templately versions prior to 3.4.9
Description The Templately plugin for WordPress is susceptible to an arbitrary file write issue. This is a result of insufficient input validation within the save template to file() function. User-controlled parameters, including session id, content id, and ai page ids, are utilized to create file paths without appropriate sanitization. This allows unauthenticated attackers to write arbitrary .ai.json files to locations within the uploads directory.
Recommendations Update to Templately version 3.4.9 or later.

Fix

Incorrect Authorization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-0831

Affected Products

Templately