Input validation vulnerability in Download Manager 3.1.22

The WordPress Download Manager plugin for WordPress is vulnerable to a type of cyber attack called Cross-Site Request Forgery in versions before 3.1.22. This is because the plugin does not have the right security measures in place to protect itself against this type of attack. This means that someone who isn’t authorized to make changes to the plugin settings can do so if they can somehow trick a website administrator into clicking on a link or doing an action.

Detected in:

Download Manager fixed vulnerable versions: >= * < 3.1.22
Download Manager Pro fixed vulnerable versions:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.