Vulnerability index

Browse CVEs

10 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Advanced File Manager CRITICAL 9.8
CVE-2025-47688

Missing Authorization vulnerability in Saad Iqbal Advanced File Manager file-manager-advanced allows Exploiting Incorrectly Configured Access Control…

Fix: 5.3.2+
Fix from $2,300 2025-05-07
Advanced File Manager MEDIUM 5.4
CVE-2024-13805

The Advanced File Manager — Ultimate WordPress File Manager and Document Library Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scrip…

Fix: 5.3.0+
Fix from $1,600 2025-03-07
Advanced File Manager HIGH 7.5
CVE-2024-13333

The Advanced File Manager plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'fma_local_file_sys…

Fix: 5.2.14+
Fix from $1,950 2025-01-17
Advanced File Manager HIGH 7.5
CVE-2024-11391

The Advanced File Manager plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation via the 'class_fma_connect…

Fix: 5.2.11+
Fix from $1,950 2024-12-03
Advanced File Manager HIGH 8.8
CVE-2024-8126

The Advanced File Manager plugin for WordPress is vulnerable to arbitrary file uploads via the 'class_fma_connector.php' file in all versions up to, …

Fix: 5.2.9+
Fix from $1,950 2024-09-26
Advanced File Manager HIGH 7.2
CVE-2024-8704

The Advanced File Manager plugin for WordPress is vulnerable to Local JavaScript File Inclusion in all versions up to, and including, 5.2.8 via the '…

Fix: 5.2.9+
Fix from $1,950 2024-09-26
Advanced File Manager MEDIUM 5.4
CVE-2024-8725

Multiple plugins and/or themes for WordPress are vulnerable to Limited File Upload in various versions. This is due to a lack of proper checks to ens…

Fix: 5.2.9+
Fix from $1,600 2024-09-26
File Manager Advanced Shortcode HIGH 8.8
CVE-2023-7061

The Advanced File Manager Shortcodes plugin for WordPress is vulnerable to arbitrary file uploads in all versions up to, and including, 2.5.3. This m…

Fix: after 2.5.3
Fix from $1,950 2024-07-10
Advanced File Manager HIGH 7.5
CVE-2024-5598

The Advanced File Manager plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 5.2.4 via the 'f…

Fix: 5.2.5+
Fix from $1,950 2024-06-29
File Manager Advanced Shortcode CRITICAL 9.8
CVE-2023-2068EPSS 40%

The File Manager Advanced Shortcode WordPress plugin through 2.3.2 does not adequately prevent uploading files with disallowed MIME types when using …

Fix: after 2.3.2
Fix from $2,300 2023-06-27