CVE-2026-103681
Frontend Dashboard < 3.0.0 - Subscriber+ Profile and Post Field Deletion via fed_user_profile_delete
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
The Frontend Dashboard WordPress plugin before 3.0.0 does not perform a capability check in one of its AJAX actions, allowing authenticated users with low privileges, such as subscribers, to delete the Frontend Dashboard WordPress plugin before 3.0.0's configured profile and post form fields.
| Vendor | unknown |
| Product | frontend dashboard |
| Published | Oct 7, 2026 |
Stay Ahead of the Next One
Get instant alerts for unknown frontend dashboard
Be the first to know when new unknown vulnerabilities affecting unknown frontend dashboard are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Unknown / Frontend Dashboard
0 < 3.0.0
References
Credits
Daniel Dhaniswara WPScan