Critical 9.8
2024-10-16< 3.1
CVE-2018-25105
Minimum safe version
7.2.8
Update to 7.2.8 or later to address 16 fixable vulnerabilities
CVE-2018-25105
CVE-2024-37254
CVE-2024-2654
CVE-2024-1538
CVE-2023-6825
CVE-2024-0761
File Manager <= 7.2.1 - Sensitive Information Exposure via Backup Filenames
File Manager < 5.2 - Multiple Vulnerabilities
File Manager <= 3.0 - Unauthenticated Arbitrary File Upload/Download
File Manager <= 4.8 - Missing Authorization on AJAX Actions
CVE-2020-24312
WordPress File Manager plugin <= 2.9 - Authenticated Cross-Site Scripting (XSS) vulnerability
CVE-2018-16966
CVE-2018-16967
CVE-2020-25213
CVE-2021-24177