Skip to main content
Loading…
    CVE-2026-1666 — The Download Manager plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'redirect_to' parameter in all versions up to, and including, 3.3.46. This is due to insuffici — CVE Database · The Intelligence Room