📦 Armember

by Reputeinfosystems

🔍 What is Armember?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-32948

CRITICAL CVSS 9.1 Apr 24, 2024

This CVE describes a Missing Authorization vulnerability in the ARMember WordPress plugin that allows unauthorized users to access privileged functionality. It affects all ARMember plugin versions up ...

CVE-2024-30223

CRITICAL CVSS 9.0 Mar 28, 2024

CVE-2024-30223 is an unauthenticated PHP object injection vulnerability in the ARMember WordPress plugin. Attackers can exploit this by sending specially crafted requests to deserialize malicious data...

CVE-2023-52200

CRITICAL CVSS 9.6 Jan 8, 2024

This vulnerability in the ARMember WordPress plugin allows attackers to perform Cross-Site Request Forgery (CSRF) attacks that lead to PHP object injection via deserialization of untrusted data. Attac...

CVE-2023-47837

HIGH CVSS 8.3 Jun 4, 2024

This vulnerability in the ARMember WordPress plugin allows attackers to bypass membership restrictions and access premium content without proper authorization. It affects all WordPress sites running A...

CVE-2024-30222

HIGH CVSS 8.5 Mar 28, 2024

This CVE describes a PHP object injection vulnerability in the ARMember WordPress plugin, allowing attackers to execute arbitrary code through deserialization of untrusted data. It affects all WordPre...

CVE-2022-47140

HIGH CVSS 7.1 Jun 12, 2023

Unauthenticated reflected cross-site scripting (XSS) vulnerability in the ARMember WordPress plugin allows attackers to inject malicious scripts via crafted URLs. This affects WordPress sites using AR...

CVE-2022-47425

MEDIUM CVSS 4.3 Dec 9, 2025

This CVE describes a missing authorization vulnerability in the ARMember WordPress plugin that allows attackers to bypass access controls. Attackers can exploit incorrectly configured security levels ...

CVE-2022-47424

MEDIUM CVSS 5.4 Nov 19, 2024

This CSRF vulnerability in ARMember WordPress plugins allows attackers to trick authenticated administrators into performing unintended actions by visiting malicious web pages. It affects ARMember fre...