File Manager

WordPress plugin · file-manager · WordPress.org ↗
0
Critical
3
High
3
Known total
0
Unfixed
Running File Manager on your site? WP Alerts checks your installed version against every entry below and emails you only when one affects you. Free, no tracking.
Scan a site Monitor my sites →
SeverityVulnerabilityAffectedFixed inCVEPublished
HIGH
CVSS 8.8
Bit File Manager < 6.9.1 - Subscriber+ Arbitrary File Read and Deletion via Connector Command Request-Source Mismatch
CVE.org
>=0, <6.9.1 v6.9.1 CVE-2026-17540 Aug 10, 2026
HIGH
CVSS 7.5
Bit File Manager < 6.9.1 - Unauthenticated File Activity Log Disclosure
CVE.org
>=0, <6.9.1 v6.9.1 CVE-2026-17541 Aug 10, 2026
HIGH
CVSS 7.5
Bit File Manager < 6.9.1 - Subscriber+ Sensitive Data Disclosure via bitapps_fm_connector
CVE.org
>=0, <6.9.1 v6.9.1 CVE-2026-17542 Aug 10, 2026

Data aggregated from WPVulnerability, NVD/NIST, ENISA EUVD, CVE.org and WordPress.org. Provided as-is; verify with the plugin author before acting. Disclaimer.