Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.2
CVE-2025-15138
A flaw has been found in prasathmani TinyFileManager up to 2.6. Affected by this issue is some unknown functionality of the file tinyfilemanager.php.…
Tiny File Manager
after 2.6
MEDIUM 6.1
CVE-2025-44998
A stored cross-site scripting (XSS) vulnerability in the component /tinyfilemanager.php of TinyFileManager v2.4.7 allows attackers to execute arbitra…
Tiny File Manager
No fix yet
CRITICAL 9.8
CVE-2022-40916
Tiny File Manager v2.4.7 and below is vulnerable to session fixation.
Tiny File Manager
after 2.4.7
CRITICAL 9.8
CVE-2022-45476
Tiny File Manager version 2.4.8 executes the code of files uploaded by users of the application, instead of just returning them for download. This is…
Tiny File Manager
No fix yet
MEDIUM 6.5
CVE-2022-45475
Tiny File Manager version 2.4.8 allows an unauthenticated remote attacker to access the application's internal files. This is possible because the ap…
Tiny File Manager
No fix yet
HIGH 8.8
CVE-2022-23044
Tiny File Manager version 2.4.8 allows an unauthenticated remote attacker to persuade users to perform unintended actions within the application. Thi…
Tiny File Manager
No fix yet
CRITICAL 9.8
CVE-2022-1000
Path Traversal in GitHub repository prasathmani/tinyfilemanager prior to 2.4.7.
Tiny File Manager
2.4.7+
HIGH 8.8
CVE-2021-45010EPSS 70%
A path traversal vulnerability in the file upload functionality in tinyfilemanager.php in Tiny File Manager before 2.4.7 allows remote attackers (wit…
Tiny File Manager
after 2.4.7
HIGH 8.8
CVE-2021-40965
A Cross-Site Request Forgery (CSRF) vulnerability exists in TinyFileManager all version up to and including 2.4.6 that allows attackers to upload fil…
Tiny File Manager
after 2.4.6
MEDIUM 6.5
CVE-2021-40964EPSS 8%
A Path Traversal vulnerability exists in TinyFileManager all version up to and including 2.4.6 that allows attackers to upload a file (with Admin cre…
Tiny File Manager
after 2.4.6
MEDIUM 5.4
CVE-2021-40966
A Stored XSS exists in TinyFileManager All version up to and including 2.4.6 in /tinyfilemanager.php when the server is given a file that contains HT…
Tiny File Manager
after 2.4.6
HIGH 7.7
CVE-2020-12103
In Tiny File Manager 2.4.1 there is a vulnerability in the ajax file backup copy functionality which allows authenticated users to create backup copi…
Tiny File Manager
Patch available
HIGH 7.7
CVE-2020-12102
In Tiny File Manager 2.4.1, there is a Path Traversal vulnerability in the ajax recursive directory listing functionality. This allows authenticated …
Tiny File Manager
Patch available
HIGH 8.8
CVE-2019-16790
In Tiny File Manager before 2.3.9, there is a remote code execution via Upload from URL and Edit/Rename files. Only authenticated users are impacted.
Tiny File Manager
2.3.9+