Medium 6.5
2025-09-22< 1.22.8
WordPress WP Frontend Admin Plugin <= 1.22.7 is vulnerable to Cross Site Scripting (XSS)
Minimum safe version
1.22.8
Update to 1.22.8 or later to address 6 fixable vulnerabilities
WordPress WP Frontend Admin Plugin <= 1.22.7 is vulnerable to Cross Site Scripting (XSS)
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress Display WP Admin Pages in the Frontend – WP Frontend Admin Plugin <= 1.20.0 is vulnerable to Cross Site Scripting (XSS)
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress Display WP Admin Pages in the Frontend – WP Frontend Admin plugin < 1.17.0.4 - Sensitive Information Disclosure vulnerability
WordPress Display WP Admin Pages in the Frontend – WP Frontend Admin plugin < 1.17.0.4 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability