This issue affects Download Manager: from n/a through 3.3.71.
Project Subscriptions
No data.
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Fri, 02 Oct 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 02 Oct 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Authorization Bypass Through User-Controlled Key vulnerability in Shahjada Download Manager allows Retrieve Embedded Sensitive Data. This issue affects Download Manager: from n/a through 3.3.71. | |
| Title | WordPress Download Manager plugin <= 3.3.71 - Sensitive Data Exposure vulnerability | |
| Weaknesses | CWE-639 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-10-02T11:30:53.569Z
Reserved: 2026-09-21T14:00:09.916Z
Link: CVE-2026-94405
Updated: 2026-10-02T11:30:48.373Z
Status : Deferred
Published: 2026-10-02T10:17:09.170
Modified: 2026-10-02T13:18:55.613
Link: CVE-2026-94405
No data.
OpenCVE Enrichment
Updated: 2026-10-02T11:45:07Z