Known Vulnerabilities for Frontend User Upload by Frontend User Upload Project
Listed below are 1 of the newest known vulnerabilities associated with "Frontend User Upload" by "Frontend User Upload Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-48946 json | The K2 frontend article-attachment upload path accepts files whose extension is `.php`, and Apache's standard mod_php matches... | Not Provided | 2026-06-25 | 2026-06-28 |
| CVE-2026-12277 json | The Frontend File Manager Plugin WordPress plugin through 23.6 does not validate a file path derived from user input before d... | Not Provided | 2026-07-07 | 2026-07-07 |
| CVE-2026-9067 json | The Schema & Structured Data for WP & AMP WordPress plugin before 1.60 does not check user capabilities on its frontend AJAX ... | Not Provided | 2026-06-10 | 2026-06-10 |
| CVE-2026-8912 json | The Contest Gallery plugin for WordPress is vulnerable to SQL Injection via the 'form_input' parameter in versions up to, and... | Not Provided | 2026-05-19 | 2026-05-19 |
| CVE-2015-4607 json | Not Provided | 2015-06-16 | 2026-05-06 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Frontend User Upload Project | Frontend User Upload | 0.5.0 |