VYPR
Vendor

Mediajedi

Products
1
CVEs
2
Across products
2
Status
Private

Products

1

Recent CVEs

2
  • CVE-2022-2356HigAug 8, 2022
    risk 0.57cvss 8.8epss 0.01

    The Frontend File Manager & Sharing WordPress plugin before 1.1.3 does not filter file extensions when letting users upload files on the server, which may lead to malicious code being uploaded.

  • CVE-2024-7848MedAug 22, 2024
    risk 0.28cvss 4.3epss 0.00

    The User Private Files – WordPress File Sharing Plugin plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 2.1.0 via the 'dpk_upvf_update_doc' due to missing validation on the 'docid' user controlled key. This makes it…