In Pluck-4.7.15 admin background a remote command execution vulnerability exists when uploading files.
- https://github.com/pluck-cms/pluck/issues/98
No PoCs found on GitHub currently.