PT-2025-53417 · WordPress · Frontend Post Submission Manager Lite

Md. Moniruzzaman Prodhan

+1

·

Published

2025-12-25

·

Updated

2025-12-26

·

CVE-2025-14913

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Frontend Post Submission Manager Lite WordPress Plugin versions through 1.2.6
Description The Frontend Post Submission Manager Lite WordPress Plugin is affected by a flaw that allows unauthorized data loss. An incorrect authorization check within the media delete action function permits unauthenticated attackers to delete arbitrary attachments.
Recommendations Update the Frontend Post Submission Manager Lite WordPress Plugin to a version later than 1.2.6.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2025-14913

Affected Products

Frontend Post Submission Manager Lite