WordPress Plugin Download Manager Arbitrary File Deletion - CVE-2022-2431
WordPress Plugin Download Manager is prone to a vulnerability that lets attackers delete arbitrary files because the application fails to properly verify user-supplied input. An attacker can exploit this vulnerability to delete arbitrary files in the context of the webserver process. WordPress Plugin Download Manager version 3.2.50 is vulnerable prior versions may also be affected.