Security Advisory

CVE-2026-81346

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-08-29 06:00:24
Last updated 2026-08-30 00:56:50
Assigner WPScan
CVSS score 4.3
State PUBLISHED

Description

The Frontend Admin by DynamiApps WordPress plugin before 3.29.11 does not perform a capability check on one of its AJAX actions, allowing any authenticated user, such as a subscriber, to delete arbitrary membership plans.