Skip to content

Known CVE

Frontend File Manager Plugin <= 23.5 - Unauthenticated Arbitrary Email Sending

Frontend File Manager Plugin WordPress plugin through 23.5 contains an open relay and unauthorized file access vulnerability caused by lack of authentication and security checks, letting unauthenticated attackers send emails and access files, exploit requires no authentication.

CVE-2026-0829

High2026CVSS 7.5CWE-862

cve2026 · wordpress · wp-plugin · unauth · email · frontend-file-manager · missing-auth

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website