plugin

Wc Frontend Manager Ultimate Vulnerabilities

1 known security issue reported for the Wc Frontend Manager Ultimate WordPress plugin. Most recent disclosed Jan 15, 2026.

1 medium

Running Wc Frontend Manager Ultimate on your site? Check whether your installed version is affected.

Scan your site free

WooCommerce Frontend Manager – Ultimate < 6.7.7 - Authenticated (Subscriber+) SQL Injection

medium

The WooCommerce Frontend Manager – Ultimate plugin for WordPress is vulnerable to SQL Injection in versions up to 6.7.7 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with subscriber-level acce...

CVSS:
6.5
Affected:
up to 6.7.7
Fixed in:
6.7.7
Disclosed:
Jan 15, 2026

CVE-2026-22335 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database