← WordPress Vulnerabilities
WordPress security by component

Frontend Post Submission Manager Lite

Frontend Post Submission Manager Lite is a WordPress component with 4 published CVE records in this archive. The latest tracked vulnerability was published Feb 18, 2026; the highest CVE/CNA score is 6.1.

Plugin slug: frontend-post-submission-manager-lite

CVE-2026-1296: Frontend Post Submission Manager Lite: An open redirect

Frontend Post Submission Manager Lite is affected by an open redirect. The vulnerable path is reachable without authentication. A crafted link can redirect visitors from the trusted site to an attacker-controlled destination.

PublishedFeb 18, 2026
Safe version guidanceSee mitigation notes
Safe version
Feb 18, 2026 CVE-2026-1296
Frontend Post Submission Manager Lite: An open redirect
Frontend Post Submission Manager Lite is affected by an open redirect. The vulnerable path is reachable without authentication. A crafted link can redirect visitors from the trusted site to an attacker-controlled destination.
See mitigation notes
CVE6.1
NVDPending
Dec 26, 2025 CVE-2025-14913
Frontend Post Submission Manager Lite – Frontend Posting: A security weakness
Frontend Post Submission Manager Lite – Frontend Posting is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE5.3
NVDPending
Dec 21, 2025 CVE-2025-14080
Frontend Post Submission Manager Lite: A security weakness
Frontend Post Submission Manager Lite is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE5.3
NVDPending
Sep 06, 2024 CVE-2024-8427
Frontend Post Submission Manager Lite – Frontend Posting: A security weakness
Frontend Post Submission Manager Lite – Frontend Posting is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE4.3
NVDPending