CVE

CVE-2026-3124 — Download Monitor < 5.1.8 - Insecure Direct Object Reference to Unauthenticated Arbitrary Order Completion via 'token' and 'order_id'

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2026-3124 Download Monitor < 5.1.8 - Insecure Direct Object Reference to Unauthenticated Arbitrary Order Completion via 'token' and 'order_id' Unknown < 5.1.8 5.1.8

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.