cleantalk

Vulnerabilities and Security Researches

Security report for CVE Paid Memberships Pro – Content Restriction, User Registration, & Paid Subscriptions > CVE-2024-1279

CVE, Research URL

CVE-2024-1279

Published on
Mar 11, 2024
Research Description
The Paid Memberships Pro WordPress plugin before 2.12.9 does not prevent user with at least the contributor role from leaking other users' sensitive metadata.
Affected versions
Min -, max 2.12.9.
Status
vulnerable