cleantalk
Vulnerabilities and Security Researches

Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress, CVE-2023-41954

CVE, Research URL

CVE-2023-41954

Published on
May 17, 2024
Research Description
Improper Privilege Management vulnerability in ProfilePress Membership Team ProfilePress allows Privilege Escalation.This issue affects ProfilePress: from n/a through 4.13.1.
Affected versions
max 4.13.2.
Status
vulnerable