Input validation vulnerability in Download Manager 3.2.61

The Download Manager plugin for WordPress is vulnerable to a type of malicious attack called Stored Cross-Site Scripting. This type of attack can be used by attackers who have access to certain levels of permissions (contributor and above) to insert dangerous code into webpages. This code can then be run whenever someone views the infected page

Detected in:

Download Manager fixed vulnerable versions: >= * <= 3.2.61
Download Manager Pro fixed vulnerable versions:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.