CVE-2022-45836: w3eden Download Manager

Medium severity, CVSS 6.1. EPSS: 0.7% chance of exploitation in the next 30 days.

Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in W3 Eden, Inc. Download Manager plugin <= 3.2.59 versions.

Affected products

  • w3eden Download Manager: before 3.2.60 (fixed in 3.2.60)

Published 2023-04-18. Last modified 2026-06-17.