codename065
Web & CMS Pluginsunknown
Top products
Latest CVEs
The 15 most recently published vulnerabilities affecting codename065.
- CVE-2026-4057Download Manager <= 3.3.51 - Missing Authorization to Authenticated (Contributor+) Media File Protection Removal4.3
- CVE-2026-5357Download Manager <= 3.3.52 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode Attributes6.4
- CVE-2026-2571Download Manager <= 3.3.49 - Missing Authorization to Authenticated (Subscriber+) User Email Enumeration via 'user' Parameter4.3
- CVE-2026-1666Download Manager <= 3.3.46 - Reflected Cross-Site Scripting via 'redirect_to' Parameter6.1
- CVE-2025-15364Download Manager <= 3.3.40 - Unauthenticated Limited Privilege Escalation via updatePassword7.3
- CVE-2025-13498Download Manager <= 3.3.32 - Missing Authorization to Authenticated (Subscriber+) Media Attachment Password Disclosure4.3
- CVE-2025-12177Download Manager <= 3.3.30 - Unauthenticated Cron Trigger due to Hardcoded Cron Key5.3
- CVE-2025-10146Download Manager <= 3.3.23 - Reflected Cross-Site Scripting via `user_ids` Parameter6.1
- CVE-2025-4367Download Manager <= 3.3.18 - Authenticated (Author+) Stored Cross-site Scripting via wpdm_user_dashboard Shortcode6.4
- CVE-2025-3404Download Manager <= 3.3.12 - Authenticated (Author+) Arbitrary File Deletion8.8
- CVE-2025-3056Download Manager <= 3.3.12 - Authenticated (Author+) Stored Cross-Site Scripting via SVG File Upload5.4
- CVE-2025-1785Download Manager <= 3.3.08 - Authenticated (Author+) Path Traversal to Limited File Overwrite5.4
- CVE-2024-11768Download manager <= 3.3.03 - Improper Authorization to Unauthenticated Download of Password-Protected Files5.3
- CVE-2024-11740Download Manager <= 3.3.03 - Unauthenticated Arbitrary Shortcode Execution7.3
- CVE-2024-11225Premium Packages – Sell Digital Products Securely <= 5.9.3 - Reflected Cross-Site Scripting via add_query_arg6.1