CyberRota Analysis
AI-GeneratedEasy Digital Downloads versions up to 3.6.9 are vulnerable to an arbitrary file deletion flaw that allows administrators to delete files without proper authorization. This could lead to the loss of critical data or disruption of service for affected installations. Organizations using this plugin should prioritize patching to mitigate potential data loss and maintain system integrity.
CVE
CVE-2026-66476
Severity
MEDIUM
CVSS
4.9
EPSS
0.32%
Original NVD Description
Administrator Arbitrary File Deletion in Easy Digital Downloads <= 3.6.9 versions.