WP Clinic
Log in Sign up

CVE · Critical

CVE-2025-47688 — Advanced File Manager – Ultimate File Manager for WordPress And Document Library Solution [file-manager-advanced] < 5.3.2

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2025-47688 Advanced File Manager – Ultimate File Manager for WordPress And Document Library Solution [file-manager-advanced] < 5.3.2 Missing Authorization Critical 9.8 < 5.3.2 5.3.2 2025-05-07

CVE-2025-47688

The Advanced File Manager plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on a function in versions up to, and including, 5.3.1. This makes it possible for unauthenticated attackers to dismiss admin notices.

Source: Wordfence

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.