VYPR
Medium severity4.9NVD Advisory· Published Sep 26, 2022· Updated Jun 17, 2026

CVE-2022-2926

CVE-2022-2926

Description

The Download Manager WordPress plugin before 3.2.55 does not validate one of its settings, which could allow high privilege users such as admin to list and read arbitrary files and folders outside of the blog directory

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.