Known vulnerabilities in the Shared Files plugin
8 security advisories have been published for the Shared Files plugin. Each entry below states what an attacker can do, what privilege they need, and the version the issue was fixed in.
- Shared Files - Denial of Service (CVE-2026-12513) MEDIUM
- Shared Files - Security Vulnerability (CVE-2026-12514) MEDIUM
- Shared Files - Path Traversal (CVE-2026-49112) HIGH
- Shared Files - Arbitrary File Upload (CVE-2025-4392) HIGH
- Shared Files - Arbitrary File Upload (CVE-2024-13504) HIGH
- Shared Files - Arbitrary File Upload (CVE-2023-4819) MEDIUM
- Shared Files - Cross-Site Scripting (XSS) (CVE-2021-24856) MEDIUM
- Shared Files - Arbitrary File Upload (CVE-2021-24736) MEDIUM