CVE · High

CVE-2024-5599 — FileOrganizer – WordPress File Manager [fileorganizer] < 1.0.8

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2024-5599 FileOrganizer – WordPress File Manager [fileorganizer] < 1.0.8 Insecure Storage of Sensitive Information High 7.5 < 1.0.8 1.0.8 2024-06-06

CVE-2024-5599

The FileOrganizer – Manage WordPress and Website Files plugin through version 1.0.7 contains a sensitive information exposure vulnerability in the fileorganizer_ajax_handler function that allows unauthenticated attackers to access sensitive files such as backups that have been placed in the plugin's Trash folder. This vulnerability exposes confidential data to unauthorized access without requiring user authentication.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.