cleantalk
Vulnerabilities and Security Researches

Simple Membership WP user Import, CVE-2026-24986

CVE, Research URL

CVE-2026-24986

Published on
Feb 03, 2026
Research Description
Cross-Site Request Forgery (CSRF) vulnerability in wp.insider Simple Membership WP user Import simple-membership-wp-user-import allows Cross Site Request Forgery.This issue affects Simple Membership WP user Import: from n/a through <= 1.9.1.
Affected versions
max 1.9.1.
Status
vulnerable