Live Vulnerability Intelligence
Threat Database
Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.
Threat Entry
Updated 2025-06-20
CVE-2024-13617 - Aoa Downloadable Plugin
The aoa-downloadable WordPress plugin through 0.1.0 doesn't validate a parameter in its download function, allowing unauthenticated attackers to download arbitrary files from the server
PLUGIN
Aoa Downloadable
CVE-2024-13617
Risk Score
Threat Entry
Updated 2025-06-20
CVE-2024-13618 - Aoa Downloadable Plugin
The aoa-downloadable WordPress plugin through 0.1.0 lacks authorization and authentication for requests to its download.php endpoint, allowing unauthenticated visitors to make requests to arbitrary URLs.
PLUGIN
Aoa Downloadable
CVE-2024-13618
Risk Score
