N/A
2026-02-17< 1.69.1
WP-DownloadManager <= 1.69 - Authenticated (Administrator+) Path Traversal to Arbitrary File Read via 'download_path' Parameter
Minimum safe version
1.69.1
Update to 1.69.1 or later to address 11 fixable vulnerabilities
WP-DownloadManager <= 1.69 - Authenticated (Administrator+) Path Traversal to Arbitrary File Read via 'download_path' Parameter
WP-DownloadManager <= 1.69 - Authenticated (Administrator+) Path Traversal to Arbitrary File Deletion via 'file' Parameter
CVE-2025-10747
WP-DownloadManager <= 1.68.10 - Authenticated (Administrator+) Arbitrary File Deletion
WordPress WP-DownloadManager Plugin <= 1.68.10 is vulnerable to Arbitrary File Download
CVE-2024-47341
CVE-2021-44760
CVE-2022-25605
CVE-2022-25606
CVE-2013-2697
CVE-2020-24141