Multiple Cross-Site Request Forgery (CSRF) vulnerabilities leading to stats and cache deletion were discovered by Vlad Vector (Patchstack) in the WordPress Download Manager plugin (versions <= 3.2.48).
Update the WordPress Download Manager plugin to the latest available version (at least 3.2.49).
CPE | Name | Operator | Version |
---|---|---|---|
download manager | le | 3.2.48 |