A popular plugin called Frontend Admin for WordPress has a security issue that allows attackers to delete important files on the server. This could lead to hackers being able to control the website remotely. The vulnerability exists in all versions up to 3.28.7 and can be exploited by people with Editor-level access or higher.