📦 Simple Membership

by Simple Membership Plugin

🔍 What is Simple Membership?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-41957

HIGH CVSS 8.6 May 17, 2024

CVE-2023-41957 is an unauthenticated privilege escalation vulnerability in the WordPress Simple Membership plugin. Attackers can exploit this flaw to gain unauthorized membership roles or administrati...

CVE-2023-50376

HIGH CVSS 7.1 Dec 19, 2023

This vulnerability allows attackers to inject malicious scripts into web pages generated by the Simple Membership WordPress plugin. When users visit a specially crafted URL, the script executes in the...

CVE-2023-4719

HIGH CVSS 7.2 Sep 6, 2023

The Simple Membership WordPress plugin versions up to 4.3.5 contain a reflected cross-site scripting vulnerability in the list_type parameter. Unauthenticated attackers can inject malicious scripts th...

CVE-2024-11088

MEDIUM CVSS 5.3 Nov 21, 2024

The Simple Membership WordPress plugin exposes sensitive information through WordPress core search functionality. Unauthenticated attackers can access restricted content meant for higher-level roles l...