Vulnerabilities and security researches forfrontend-dashboard frontend-dashboard
Direction: descendingApr 26, 2025
Frontend Dashboard # CVE-2025-46248
- CVE, Research URL
- Home page URL
- Application
- Date
- Apr 24, 2025
- Research Description
- Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in M A Vinoth Kumar Frontend Dashboard allows SQL Injection. This issue affects Frontend Dashboard: from n/a through 2.2.5.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
Sep 11, 2024
Frontend Dashboard # CVE-2024-8268
- CVE, Research URL
- Home page URL
- Application
- Date
- Sep 10, 2024
- Research Description
- The Frontend Dashboard plugin for WordPress is vulnerable to unauthorized code execution due to insufficient filtering on callable methods/functions via the ajax_request() function in all versions up to, and including, 2.2.4. This makes it possible for authenticated attackers, with subscriber-level access and above, to call arbitrary functions that can be leverage for privilege escalation by changing user's passwords.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
Jun 07, 2024
Frontend Dashboard # CVE-2024-29775
- CVE, Research URL
- Home page URL
- Application
- Date
- Mar 27, 2024
- Research Description
- Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in vinoth06. Frontend Dashboard allows Stored XSS.This issue affects Frontend Dashboard: from n/a through 2.2.1.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
Frontend Dashboard # CVE-2024-32726
- CVE, Research URL
- Home page URL
- Application
- Date
- Apr 24, 2024
- Research Description
- Exposure of Sensitive Information to an Unauthorized Actor vulnerability in vinoth06. Frontend Dashboard.This issue affects Frontend Dashboard: from n/a through 2.2.2.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable