Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.5
CVE-2024-11088
The Simple Membership plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.5.5 via the WordPr…
Simple Membership
4.5.6+
MEDIUM 6.1
CVE-2024-49682
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in wp.insider Simple Membership simple-membership allows Phishing.This issue affect…
Simple Membership
4.5.4+
CRITICAL 9.8
CVE-2023-41957
Improper Privilege Management vulnerability in smp7, wp.Insider Simple Membership allows Privilege Escalation.This issue affects Simple Membership: f…
Simple Membership
4.3.5+
HIGH 8.8
CVE-2023-41956
Improper Authentication vulnerability in smp7, wp.Insider Simple Membership.This issue affects Simple Membership: from n/a through 4.3.4.
Simple Membership
4.3.5+
MEDIUM 5.4
CVE-2024-4383
The Simple Membership plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'swpm_paypal_subscription_cancel_link' short…
Simple Membership
4.4.6+
MEDIUM 5.4
CVE-2024-3730
The Simple Membership plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'swpm_paypal_subscription_cancel_link' short…
Simple Membership
4.4.4+
MEDIUM 6.1
CVE-2024-1985
The Simple Membership plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Display Name' parameter in all versions up to, and i…
Simple Membership
4.4.3+
MEDIUM 6.1
CVE-2024-22308
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in smp7, wp.Insider Simple Membership.This issue affects Simple Membership: from n/…
Simple Membership
4.4.2+
MEDIUM 6.1
CVE-2023-6882
The Simple Membership plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘environment_mode’ parameter in all versions up to…
Simple Membership
after 4.3.8
MEDIUM 6.1
CVE-2023-50376
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in smp7, wp.Insider Simple Membership allows Refle…
Simple Membership
after 4.3.8
MEDIUM 6.1
CVE-2023-4719
The Simple Membership plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the `list_type` parameter in versions up to, and inclu…
Simple Membership
4.3.6+
MEDIUM 5.4
CVE-2022-4469
The Simple Membership WordPress plugin before 4.2.2 does not validate and escape some of its shortcode attributes before outputting them back in the …
Simple Membership
4.2.2+
CRITICAL 9.8
CVE-2022-2317
The Simple Membership WordPress plugin before 4.1.3 allows user to change their membership at the registration stage due to insufficient checking of …
Simple Membership
4.1.3+
HIGH 8.8
CVE-2022-2273
The Simple Membership WordPress plugin before 4.1.3 does not properly validate the membership_level parameter when editing a profile, allowing member…
Simple Membership
4.1.3+
MEDIUM 6.1
CVE-2022-1724
The Simple Membership WordPress plugin before 4.1.1 does not properly sanitise and escape parameters before outputting them back in AJAX actions, lea…
Simple Membership
4.1.1+
MEDIUM 6.5
CVE-2022-0681
The Simple Membership WordPress plugin before 4.1.0 does not have CSRF check in place when deleting Transactions, which could allow attackers to make…
Simple Membership
4.1.0+
HIGH 8.8
CVE-2016-10884
The simple-membership plugin before 3.3.3 for WordPress has multiple CSRF issues.
Simple Membership
3.3.3+
MEDIUM 6.1
CVE-2017-18499
The simple-membership plugin before 3.5.7 for WordPress has XSS.
Simple Membership
3.5.7+
HIGH 8.8
CVE-2019-14328
The Simple Membership plugin before 3.8.5 for WordPress has CSRF affecting the Bulk Operation section.
Simple Membership
3.8.5+