Path Traversal Vulnerability in Frontend Admin by DynamiApps
CVE-2025-49303
6.8MEDIUM
What is CVE-2025-49303?
An issue exists in the Frontend Admin plugin by DynamiApps that allows attackers to exploit improper limitations on pathname access, facilitating unauthorized file download and exposure of potentially sensitive data. This vulnerability affects the plugin versions up to 3.28.7, underscoring the importance of regular updates to mitigate such risks.
Affected Version(s)
Frontend Admin by DynamiApps <= 3.28.7