CVE-2026-4401 | wpchill Download Monitor Plugin up to 5.1.10 on WordPress class-dlm-downloads-path.php actions_handler cross-site request forgery (CNNVD-202604-1898)
A vulnerability has been found in wpchill Download Monitor Plugin up to 5.1.10 on WordPress and classified as problematic. The impacted element is the function actions_handler of the file class-dlm-downloads-path.php. The manipulation leads to cross-site request forgery.
This vulnerability is uniquely identified as CVE-2026-4401. The attack is possible to be carried out remotely. No exploit exists.
The affected component should be upgraded.