Pricing
Case studies
Login
Start trial
Media Library Folders
maxfoundry
Developer
8.3.7
Latest version
10,000
Installations
No date
Last updated
WordPress Plugin
No VDP
See changelog
Claim ownership
Report vulnerability
Vulnerabilities
Security Contributors
Vulnerability history
0 present
8 patched
4 Mitigation rules
Insecure Direct Object Reference to Authenticated (Author+) Arbitrary Attachment Deletion and Rename vulnerability
<= 8.3.6
13/02/2026
Missing Authorization to Plugin Settings Change vulnerability
<= 8.3.0
14/02/2025
Missing Authorization on Various Functions vulnerability
<= 8.2.3
30/08/2024
Authenticated (Subscriber+) Second-Order SQL Injection vulnerability
<= 8.2.2
29/08/2024
Reflected Cross-Site Scripting via 's' vulnerability
<= 8.2.0
19/04/2024
Directory Traversal vulnerability
<= 8.1.8
05/04/2024
Author+ SQL Injection vulnerability
<= 8.1.7
28/03/2024
Cross-Site Request Forgery (CSRF) vulnerability
<= 7.1.1
30/09/2022