| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-2098 | Download Manager <= 3.2.89 - Improper Authorization via protectMediaLibrary | codename065 | Download Manager | High | 7.5 | 2024-06-13 05:34:45 | Deep Dive |
| CVE-2024-1766 | Download Manager <= 3.2.86 - Authenticated (Subscriber+) Stored Self-Based Cross-Site Scripting | codename065 | Download Manager | Medium | 4.4 | 2024-06-12 11:05:08 | Deep Dive |
| CVE-2024-5266 | Download Manager <= 3.2.92 - Authenticated (Author+) Stored Cross-Site Scripting via Multiple Shortcodes | codename065 | Download Manager | Medium | 6.4 | 2024-06-12 08:33:19 | Deep Dive |
| CVE-2024-4001 | Download Manager <= 3.2.93 - Authenticated (Contributor+) Stored Cross-Site Scripting via wpdm_modal_login_form Shortcode | codename065 | Download Manager | Medium | 6.4 | 2024-06-05 11:01:59 | Deep Dive |
| CVE-2024-4160 | Download Manager <= 3.2.90 - Authenticated (Contributor+) Stored Cross-Site Scripting via wpdm-all-packages Shortcode | codename065 | Download Manager | Medium | 6.4 | 2024-05-31 09:31:40 | Deep Dive |
| CVE-2024-33938 | WordPress Sliding Widgets plugin <= 1.5.0 - Broken Access Control to XSS vulnerability | codename065 | Sliding Widgets | Medium | 6.5 | 2024-05-02 11:16:21 | Deep Dive |
| CVE-2023-6785 | Download Manager <= 3.2.84 - Missing Authorization | codename065 | Download Manager | Medium | 5.3 | 2024-03-13 15:26:59 | Deep Dive |
| CVE-2023-6954 | Download Manager <= 3.2.85 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode | codename065 | Download Manager | Medium | 6.4 | 2024-03-13 15:26:51 | Deep Dive |
| CVE-2023-4293 | Premium Packages - Sell Digital Products Securely <= 5.7.4 - Arbitrary User Meta Update to Authenticated (Subscriber+) Privilege Escalation | codename065 | Premium Packages – Sell Digital Products Securely | High | 8.8 | 2023-08-12 07:42:52 | Deep Dive |
| CVE-2023-2305 | Download Manager <= 3.2.70 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode | codename065 | Download Manager | Medium | 6.4 | 2023-06-09 05:33:26 | Deep Dive |
| CVE-2022-2436 | Download Manager <= 3.2.49 - Authenticated (Contributor+) PHAR Deserialization | codename065 | Download Manager | High | 8.8 | 2022-09-06 17:18:57 | Deep Dive |
| CVE-2022-2101 | Download Manager <= 3.2.46 - Contributor+ Cross-Site Scripting | codename065 | Download Manager | Medium | 6.4 | 2022-07-18 16:13:21 | Deep Dive |
| CVE-2022-1985 | Download Manager <= 3.2.42 - Reflected Cross-Site Scripting | codename065 | Download Manager | Medium | 6.1 | 2022-06-13 12:44:35 | Deep Dive |