PricingCase studies Login Start trial
Plugin Icon

WP Front User Submit / Front Editor

aharonyan

Developer

5.0.6

Latest version

200

Installations

No date

Last updated

WordPress Plugin
No VDP
See changelog
Claim ownership
Report vulnerability
    VulnerabilitiesSecurity Contributors

Vulnerability history

2 present
11 patched
6 Mitigation rules
  • Unauthenticated Sensitive Information Exposure vulnerability
    < 5.0.6
    12/03/2026
  • WordPress Guest posting / Frontend Posting / Front Editor - WP Front User Submit plugin <= 5.0.0 - Missing Authorization to Unauthenticated Media Deletion vulnerability
    <= 5.0.0
    06/01/2026
  • Open Redirect vulnerability
    <= 4.9.5
    01/12/2025
  • Reflected Cross Site Scripting (XSS) vulnerability
    <= 4.9.3
    23/06/2025
  • Cross Site Request Forgery (CSRF) vulnerability
    <= 5.0.6
    19/06/2025
  • Cross Site Scripting (XSS) vulnerability
    <= 5.0.6
    07/05/2025
  • Authenticated (Admin+) Stored Cross-Site Scripting vulnerability
    <= 4.4.7
    30/04/2024
  • Authenticated Stored Cross-Site Scripting vulnerability
    < 4.0.4
    02/08/2023
  • Reflected Cross Site Scripting (XSS) vulnerability
    <= 4.0.0
    18/07/2023
  • Auth. Stored Cross-Site Scripting (XSS) vulnerability
    <= 3.8.4
    27/06/2023
  • Authenticated (Subscriber+) Stored Cross-Site Scripting vulnerability
    < 3.8.0
    13/06/2023
  • Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability
    <= 3.4.0
    28/02/2022
  • Sensitive Information Disclosure vulnerability
    <= 3.4.0
    28/02/2022

Vulnerability mitigation

  • Pricing
  • Application security (SCA)
  • RapidMitigate New
  • Threat Intelligence (API)
  • VS Monarx
  • VS Imunify360
  • VS Wordfence
  • Documentation
  • Service status
  • Log in

Code security

  • Managed VDP New
  • Active VDP directory 1,169
  • Security auditing
  • Compliance (CRA) New
  • Log in New

Bug bounty

  • Bug bounty
  • Leaderboard
  • Guidelines
  • Learn New
  • Report
  • Discord
  • Log in New

Use cases

  • Web developers
  • Webhosts New
  • Software vendors
  • WordPress
  • WooCommerce

Resources

  • Partners
  • Vulnerability database
  • Whitepaper 2026 New
  • Articles
  • Case studies New
  • Webinars New
  • Vulnerability statistics

Patchstack

  • About
  • Careers
  • Merch store
  • Media kit
  • LinkedIn
  • Facebook
  • X
© 2026 Patchstack
DPA
Privacy Policy
Accessibility
Terms & Conditions