Missing Authorization vulnerability in weDevs WP User Frontend allows Exploiting Incorrectly Configured Access Control Security Levels.
This issue affects WP User Frontend: from n/a through 4.3.1.
This issue affects WP User Frontend: from n/a through 4.3.1.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
Update the WordPress WP User Frontend Plugin to the latest available version (at least 4.3.2).
Workaround
No workaround given by the vendor.
References
History
Wed, 29 Apr 2026 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Missing Authorization vulnerability in weDevs WP User Frontend allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WP User Frontend: from n/a through 4.3.1. | |
| Title | WordPress WP User Frontend plugin <= 4.3.1 - Broken Access Control vulnerability | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-04-29T07:51:40.734Z
Reserved: 2026-04-27T10:39:10.016Z
Link: CVE-2026-42412
No data.
Status : Received
Published: 2026-04-29T09:16:24.273
Modified: 2026-04-29T09:16:24.273
Link: CVE-2026-42412
No data.
OpenCVE Enrichment
Updated: 2026-04-29T10:00:09Z
Weaknesses