Shahjada Download Manager vulnerabilities

6 known vulnerabilities affecting shahjada/download_manager.

Total CVEs
6
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM4UNKNOWN2

Vulnerabilities

Page 1 of 1
CVE-2026-39615MEDIUMCVSS 5.9≤ 3.3.532026-04-08
CVE-2026-39615 [MEDIUM] CWE-79 CVE-2026-39615: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Shahjada Download Manager download-manager allows Stored XSS.This issue affects Download Manager: from n/a through <= 3.3.53.
cvelistv5nvd
CVE-2026-39676MEDIUMCVSS 5.3≤ 3.3.522026-04-08
CVE-2026-39676 [MEDIUM] CWE-862 CVE-2026-39676: Missing Authorization vulnerability in Shahjada Download Manager download-manager allows Exploiting Missing Authorization vulnerability in Shahjada Download Manager download-manager allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Download Manager: from n/a through <= 3.3.52.
cvelistv5nvd
CVE-2025-63070MEDIUMCVSS 4.3≤ 3.3.322025-12-09
CVE-2025-63070 [MEDIUM] CWE-497 CVE-2025-63070: Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Shahjada Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Shahjada Download Manager download-manager allows Retrieve Embedded Sensitive Data.This issue affects Download Manager: from n/a through <= 3.3.32.
cvelistv5nvd
CVE-2025-60093UNKNOWN≤ 3.3.242025-09-26
CVE-2025-60093 CWE-352 CVE-2025-60093: Cross-Site Request Forgery (CSRF) vulnerability in Shahjada Download Manager download-manager allows Cross-Site Request Forgery (CSRF) vulnerability in Shahjada Download Manager download-manager allows Cross Site Request Forgery.This issue affects Download Manager: from n/a through <= 3.3.24.
cvelistv5nvd
CVE-2025-60092UNKNOWN≤ 3.3.252025-09-26
CVE-2025-60092 CWE-497 CVE-2025-60092: Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Shahjada Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Shahjada Download Manager download-manager allows Retrieve Embedded Sensitive Data.This issue affects Download Manager: from n/a through <= 3.3.25.
cvelistv5nvd
CVE-2024-56217MEDIUMCVSS 6.3≤ 3.3.032024-12-31
CVE-2024-56217 [MEDIUM] CWE-862 CVE-2024-56217: Missing Authorization vulnerability in Shahjada Download Manager download-manager allows Exploiting Missing Authorization vulnerability in Shahjada Download Manager download-manager allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Download Manager: from n/a through <= 3.3.03.
cvelistv5nvd