Known vulnerabilities in the Download Monitor plugin
14 security advisories have been published for the Download Monitor plugin. Each entry below states what an attacker can do, what privilege they need, and the version the issue was fixed in.
- Download Monitor - Security Vulnerability (CVE-2026-16608) MEDIUM
- Download Monitor - Security Vulnerability (CVE-2026-39489) MEDIUM
- Download Monitor - Cross-Site Request Forgery (CSRF) (CVE-2026-4401) MEDIUM
- Download Monitor - Security Vulnerability (CVE-2026-3124) HIGH
- Download Monitor - Broken Access Control (CVE-2024-10399) MEDIUM
- Download Monitor - Broken Access Control (CVE-2024-10092) MEDIUM
- Download Monitor - Broken Access Control (CVE-2024-8552) MEDIUM
- Download Monitor - Broken Access Control (CVE-2024-3269) MEDIUM
- Download Monitor - Security Vulnerability (CVE-2022-2981) MEDIUM
- Download Monitor - Security Vulnerability (CVE-2022-2222) MEDIUM
- Download Monitor - Security Vulnerability (CVE-2021-31567) MEDIUM
- Download Monitor - Cross-Site Scripting (XSS) (CVE-2021-23174) LOW
- Download Monitor - Cross-Site Scripting (XSS) (CVE-2021-36920) MEDIUM
- Download Monitor - SQL Injection (CVE-2021-24786) HIGH