Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total2
Critical0
High0
Medium2
Reset
Showing 1-2 of 2 records
Threat Entry Updated 2025-10-02

CVE-2025-10744 - And Backup By Managefy Plugin

The File Manager, Code Editor, and Backup by Managefy plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.6.1 through publicly exposed log files. This makes it possible for unauthenticated attackers to view information like full paths and full paths to backup files information contained in the exposed log files.

PLUGIN And Backup By Managefy

CVE-2025-10744

MEDIUM CVSS 5.3 2025-10-01
Threat Entry Updated 2025-08-29

CVE-2025-9345 - And Backup By Managefy Plugin

The File Manager, Code Editor, and Backup by Managefy plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 1.4.8 via the ajax_downloadfile() function. This makes it possible for authenticated attackers, with Subscriber-level access and above, to perform actions on files outside of the originally intended directory.

PLUGIN And Backup By Managefy

CVE-2025-9345

MEDIUM CVSS 4.9 2025-08-28
Scroll to top