Vulnerabilities (CVE)

Filtered by vendor Wpchill Subscribe
Filtered by product Download Monitor
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-45354 1 Wpchill 1 Download Monitor 2024-01-11 N/A 7.5 HIGH
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in WPChill Download Monitor.This issue affects Download Monitor: from n/a through 4.7.60.
CVE-2023-34007 1 Wpchill 1 Download Monitor 2023-12-28 N/A 8.8 HIGH
Unrestricted Upload of File with Dangerous Type vulnerability in WPChill Download Monitor.This issue affects Download Monitor: from n/a through 4.8.3.
CVE-2021-24786 1 Wpchill 1 Download Monitor 2022-01-11 6.5 MEDIUM 7.2 HIGH
The Download Monitor WordPress plugin before 4.4.5 does not properly validate and escape the "orderby" GET parameter before using it in a SQL statement when viewing the logs, leading to an SQL Injection issue