The Ocean Extra plugin for WordPress has a vulnerability that could let attackers with administrator-level access to inject a harmful object. This vulnerability affects all versions of the plugin up to and including version 2.0.4 and happens when the plugin processes a malicious file. The attacker could use this vulnerability to delete files