« Back to list

Aleksanaharonyan

Aleksanaharonyan Front Editor: vulnerabilities and CVEs

Aleksanaharonyan Front Editor has 3 published vulnerabilities, 0 of them in the last 12 months. 0 are rated critical and 0 are listed by CISA as actively exploited.

CVEs3
Last 12 months0
Critical0
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2025-52795High (7.1)0.15%—Jun 20, 2025
Cross-Site Request Forgery (CSRF) vulnerability in aharonyan WP Front User Submit / Front Editor front-editor allows Cross Site Request Forgery.This issue affects WP Front User Submit / Front Editor: from n/a through <=…
CVE-2025-47617Medium (5.9)0.27%—May 7, 2025
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in aharonyan WP Front User Submit / Front Editor front-editor allows Stored XSS.This issue affects WP Front User Submit…
CVE-2023-1982Medium (4.8)0.44%—Aug 30, 2023
The Front Editor WordPress plugin through 4.0.4 does not sanitize and escape some of its form settings, which could allow high-privilege users to perform Stored Cross-Site Scripting attacks even when the unfiltered_html…

🎯 How it gets exploited (ATT&CK techniques)

  1. T1185 Browser Session Hijacking1
  2. T1189 Drive-by Compromise1

Number of CVEs of this technology mapped to each exploitation or primary-impact technique.