VendorsWPChilldownload_monitorany version
Vulnerabilities

WPChill Media Labs Download Monitor any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

12CVEs
CVE-2023-34007
WordPress Download Monitor Plugin <= 4.8.3 is vulnerable to Arbitrary File Upload
Published 2023-12-20 · Modified
9.9EPSS 0.009
CVE-2024-30501
WordPress Download Monitor theme <= 4.9.4 - Auth. SQL Injection vulnerability
Published 2024-03-29 · Modified
7.6EPSS 0.006
CVE-2022-45354
WordPress Download Monitor Plugin <= 4.7.60 is vulnerable to Sensitive Data Exposure
Published 2024-01-08 · Modified
7.5EPSS 0.381
CVE-2022-4972
Download Monitor <= 4.7.51 - Missing Authorization to Unauthenticated Data Export
Published 2024-10-16 · Analyzed
7.5EPSS 0.005
CVE-2021-24786
Download Monitor < 4.4.5 - Admin+ SQL Injection
Published 2022-01-03 · Modified
7.21 PoCEPSS 0.173
CVE-2021-31567
WordPress Download Monitor plugin <= 4.4.6 - Authenticated Arbitrary File Download vulnerability
Published 2022-01-28 · Modified
6.8EPSS 0.014
CVE-2021-36920
WordPress plugin Download Monitor <= 4.4.6 - Authenticated Reflected Cross-Site Scripting (XSS) vulnerability
Published 2022-01-14 · Modified
5.4EPSS 0.006
CVE-2022-2222
Download Monitor < 4.5.91 - Admin+ Arbitrary File Download
Published 2022-07-17 · Modified
4.9EPSS 0.011
CVE-2022-2981
Download Monitor < 4.5.98 - Admin+ Arbitrary File Download
Published 2022-10-10 · Modified
4.9EPSS 0.010
CVE-2023-31219
WordPress Download Monitor Plugin <= 4.8.1 is vulnerable to Server Side Request Forgery (SSRF)
Published 2023-11-13 · Modified
4.9EPSS 0.007
CVE-2021-23174
WordPress Download Monitor plugin <= 4.4.6 - Auth. Stored Cross-Site Scripting (XSS) vulnerability
Published 2022-01-28 · Modified
4.8EPSS 0.839
CVE-2024-8552
Download Monitor <= 5.0.9 - Missing Authorization to Authenticated (Subscriber+) Shop Enable
Published 2024-09-26 · Analyzed
4.3EPSS 0.004