Vulnerability index

Browse CVEs

14 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.2 CVE-2025-15138 A flaw has been found in prasathmani TinyFileManager up to 2.6. Affected by this issue is some unknown functionality of the file tinyfilemanager.php.… Tiny File Manager after 2.6 Fix from $1,9502025-12-28 MEDIUM 6.1 CVE-2025-44998 A stored cross-site scripting (XSS) vulnerability in the component /tinyfilemanager.php of TinyFileManager v2.4.7 allows attackers to execute arbitra… Tiny File Manager No fix yet Fix from $1,6002025-05-23 CRITICAL 9.8 CVE-2022-40916 Tiny File Manager v2.4.7 and below is vulnerable to session fixation. Tiny File Manager after 2.4.7 Fix from $2,3002025-02-06 CRITICAL 9.8 CVE-2022-45476 Tiny File Manager version 2.4.8 executes the code of files uploaded by users of the application, instead of just returning them for download. This is… Tiny File Manager No fix yet Fix from $2,3002022-11-25 MEDIUM 6.5 CVE-2022-45475 Tiny File Manager version 2.4.8 allows an unauthenticated remote attacker to access the application's internal files. This is possible because the ap… Tiny File Manager No fix yet Fix from $1,6002022-11-25 HIGH 8.8 CVE-2022-23044 Tiny File Manager version 2.4.8 allows an unauthenticated remote attacker to persuade users to perform unintended actions within the application. Thi… Tiny File Manager No fix yet Fix from $1,9502022-11-25 CRITICAL 9.8 CVE-2022-1000 Path Traversal in GitHub repository prasathmani/tinyfilemanager prior to 2.4.7. Tiny File Manager 2.4.7+ Fix from $2,3002022-03-17 HIGH 8.8 CVE-2021-45010EPSS 70% A path traversal vulnerability in the file upload functionality in tinyfilemanager.php in Tiny File Manager before 2.4.7 allows remote attackers (wit… Tiny File Manager after 2.4.7 Fix from $1,9502022-03-15 HIGH 8.8 CVE-2021-40965 A Cross-Site Request Forgery (CSRF) vulnerability exists in TinyFileManager all version up to and including 2.4.6 that allows attackers to upload fil… Tiny File Manager after 2.4.6 Fix from $1,9502021-09-15 MEDIUM 6.5 CVE-2021-40964EPSS 8% A Path Traversal vulnerability exists in TinyFileManager all version up to and including 2.4.6 that allows attackers to upload a file (with Admin cre… Tiny File Manager after 2.4.6 Fix from $1,6002021-09-15 MEDIUM 5.4 CVE-2021-40966 A Stored XSS exists in TinyFileManager All version up to and including 2.4.6 in /tinyfilemanager.php when the server is given a file that contains HT… Tiny File Manager after 2.4.6 Fix from $1,6002021-09-15 HIGH 7.7 CVE-2020-12103 In Tiny File Manager 2.4.1 there is a vulnerability in the ajax file backup copy functionality which allows authenticated users to create backup copi… Tiny File Manager Patch available Fix from $1,9502020-04-28 HIGH 7.7 CVE-2020-12102 In Tiny File Manager 2.4.1, there is a Path Traversal vulnerability in the ajax recursive directory listing functionality. This allows authenticated … Tiny File Manager Patch available Fix from $1,9502020-04-28 HIGH 8.8 CVE-2019-16790 In Tiny File Manager before 2.3.9, there is a remote code execution via Upload from URL and Edit/Rename files. Only authenticated users are impacted. Tiny File Manager 2.3.9+ Fix from $1,9502019-12-30