PLUGIN SECURITY

Is Fileorganizer safe?

FileOrganizer is an intuitive file manager to easily edit, delete, upload, download, and manage all your WordPress files and folders right from the da …

What this plugin does

  • Slug: fileorganizer
  • Author: Softaculous
  • 200000+ active installs
  • 96/100 rating (48 reviews on wordpress.org)
  • 2291878 all-time downloads
  • On WordPress.org since 2023-03-14

file explorerfile managerFileOrganizerupload fileswordpress file manager

Maintenance status

  • Latest known version: 1.2.0
  • Last updated: 2026-06-10 2:21pm GMT
  • Tested up to WordPress: 7.0.4
  • Requires PHP: 5.5+
  • Max supported PHP (analyzed): 8.4

Known vulnerabilities

7 known CVEs on file for Fileorganizer. Reported between 2023 and 2026.

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2026-11962 FileOrganizer – WordPress File Manager [fileorganizer] < 1.2.0 Unrestricted Upload of File with Dangerous Type Unknown < 1.2.0 1.2.0 2026-06-15 ✓ fixed in latest
CVE-2026-6382 FileOrganizer – WordPress File Manager [fileorganizer] < 1.1.9 Improper Control of Generation of Code ('Code Injection') Unknown < 1.1.9 1.1.9 2026-06-15 ✓ fixed in latest
CVE-2024-11010 FileOrganizer – WordPress File Manager [fileorganizer] < 1.1.5 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') High 7.2 < 1.1.5 1.1.5 2024-12-06 ✓ fixed in latest
CVE-2024-7985 FileOrganizer – WordPress File Manager [fileorganizer] < 1.1.0 Unrestricted Upload of File with Dangerous Type High 8.8 < 1.1.0 1.1.0 2024-10-29 ✓ fixed in latest
CVE-2024-5599 FileOrganizer – WordPress File Manager [fileorganizer] < 1.0.8 Insecure Storage of Sensitive Information High 7.5 < 1.0.8 1.0.8 2024-06-06 ✓ fixed in latest
CVE-2024-2324 FileOrganizer – WordPress File Manager [fileorganizer] < 1.0.7 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Medium 5.4 < 1.0.7 1.0.7 2024-04-23 ✓ fixed in latest
CVE-2023-3664 FileOrganizer – WordPress File Manager [fileorganizer] < 1.0.4 Improper Access Control High 7.2 < 1.0.4 1.0.4 2023-09-03 ✓ fixed in latest

How to fix it

Keep Fileorganizer updated — 1.2.0 is the latest version on wordpress.org, and each CVE above lists the exact release that fixed it ("Fixed in").

This is the plugin's full known vulnerability history, not a scan of any specific installation — run a free scan of your own site to check your exact installed version.

Safer / more established alternatives

Check your own WordPress site

Run a free passive scan now, or create a free account and install the WP Clinic plugin for a deep scan of your whole hosting account and AI-assisted repair.