Known Vulnerabilities for WP User Frontend by WeDevs
Listed below are 2 of the newest known vulnerabilities associated with "WP User Frontend" by "WeDevs".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-32485 | Missing Authorization vulnerability in weDevs WP User Frontend wp-user-frontend allows Exploiting Incorrectly Configured Acce... | Not Provided | 2026-03-25 | 2026-03-26 |
| CVE-2026-24364 | Missing Authorization vulnerability in weDevs WP User Frontend wp-user-frontend allows Exploiting Incorrectly Configured Acce... | Not Provided | 2026-03-25 | 2026-03-26 |
| CVE-2026-5199 | A writer role user in an attacker-controlled namespace could signal, delete, and reset workflows or activities in a victim na... | Not Provided | 2026-04-01 | 2026-04-01 |
| CVE-2026-3328 | The Frontend Admin by DynamiApps plugin for WordPress is vulnerable to PHP Object Injection via deserialization of the 'post_... | Not Provided | 2026-03-26 | 2026-03-26 |
| CVE-2025-58673 | Improper Control of Generation of Code ('Code Injection') vulnerability in weDevs WP User Frontend wp-user-frontend allows Co... | Not Provided | 2025-09-22 | 2026-04-01 |
| CVE-2025-58672 | Missing Authorization vulnerability in weDevs WP User Frontend wp-user-frontend allows Exploiting Incorrectly Configured Acce... | Not Provided | 2025-09-22 | 2026-04-01 |
| CVE-2025-57921 | Missing Authorization vulnerability in N-Media Frontend File Manager nmedia-user-file-uploader allows Exploiting Incorrectly ... | Not Provided | 2025-09-22 | 2026-04-01 |
| CVE-2025-27358 | Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in N-Media Frontend File Manager ... | Not Provided | 2025-07-04 | 2026-04-01 |
| CVE-2021-25076 | The WP User Frontend WordPress plugin before 3.5.26 does not validate and escape the status parameter before using it in a SQ... | 8.8 - HIGH | 2022-01-24 | 2022-03-18 |
| CVE-2021-24649 | The WP User Frontend WordPress plugin before 3.5.29 uses a user supplied argument called urhidden in its registration form, w... | 9.8 - CRITICAL | 2022-11-21 | 2023-11-07 |