CVE Database /
CVE-2026-11962
CVE
CVE-2026-11962 — FileOrganizer – WordPress File Manager [fileorganizer] < 1.2.0
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2026-11962
|
FileOrganizer – WordPress File Manager [fileorganizer] < 1.2.0 |
Unrestricted Upload of File with Dangerous Type |
Unknown
|
< 1.2.0
|
1.2.0 |
2026-06-15 |
—
|
CVE-2026-11962
The FileOrganizer plugin for WordPress contains a security flaw that allows attackers with elevated privileges to inject malicious PHP scripts into the system by exploiting Local File Inclusion vulnerabilities up to version 1.1.0. This weakness enables unauthorized code execution, potentially bypassing access restrictions and compromising sensitive information.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings