Medium severity4.3NVD Advisory· Published Oct 17, 2022· Updated Jun 17, 2026
CVE-2022-3126
CVE-2022-3126
Description
The Frontend File Manager Plugin WordPress plugin before 21.4 does not have CSRF check when uploading files, which could allow attackers to make logged in users upload files on their behalf
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3<21.4+ 1 more
- (no CPE)range: <21.4
- (no CPE)
- cpe:2.3:a:najeebmedia:frontend_file_manager_plugin:*:*:*:*:*:wordpress:*:*Range: <21.4
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/7db363bf-7bef-4d47-9963-c30d6fdd2fb8nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.