Vulnerability index

Browse CVEs

19 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2024-11088 The Simple Membership plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.5.5 via the WordPr… Simple Membership 4.5.6+ Fix from $1,9502024-11-21 MEDIUM 6.1 CVE-2024-49682 URL Redirection to Untrusted Site ('Open Redirect') vulnerability in wp.insider Simple Membership simple-membership allows Phishing.This issue affect… Simple Membership 4.5.4+ Fix from $1,6002024-10-24 CRITICAL 9.8 CVE-2023-41957 Improper Privilege Management vulnerability in smp7, wp.Insider Simple Membership allows Privilege Escalation.This issue affects Simple Membership: f… Simple Membership 4.3.5+ Fix from $2,3002024-05-17 HIGH 8.8 CVE-2023-41956 Improper Authentication vulnerability in smp7, wp.Insider Simple Membership.This issue affects Simple Membership: from n/a through 4.3.4. Simple Membership 4.3.5+ Fix from $1,9502024-05-17 MEDIUM 5.4 CVE-2024-4383 The Simple Membership plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'swpm_paypal_subscription_cancel_link' short… Simple Membership 4.4.6+ Fix from $1,6002024-05-14 MEDIUM 5.4 CVE-2024-3730 The Simple Membership plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'swpm_paypal_subscription_cancel_link' short… Simple Membership 4.4.4+ Fix from $1,6002024-04-25 MEDIUM 6.1 CVE-2024-1985 The Simple Membership plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Display Name' parameter in all versions up to, and i… Simple Membership 4.4.3+ Fix from $1,6002024-03-13 MEDIUM 6.1 CVE-2024-22308 URL Redirection to Untrusted Site ('Open Redirect') vulnerability in smp7, wp.Insider Simple Membership.This issue affects Simple Membership: from n/… Simple Membership 4.4.2+ Fix from $1,6002024-01-24 MEDIUM 6.1 CVE-2023-6882 The Simple Membership plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘environment_mode’ parameter in all versions up to… Simple Membership after 4.3.8 Fix from $1,6002024-01-11 MEDIUM 6.1 CVE-2023-50376 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in smp7, wp.Insider Simple Membership allows Refle… Simple Membership after 4.3.8 Fix from $1,6002023-12-19 MEDIUM 6.1 CVE-2023-4719 The Simple Membership plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the `list_type` parameter in versions up to, and inclu… Simple Membership 4.3.6+ Fix from $1,6002023-09-06 MEDIUM 5.4 CVE-2022-4469 The Simple Membership WordPress plugin before 4.2.2 does not validate and escape some of its shortcode attributes before outputting them back in the … Simple Membership 4.2.2+ Fix from $1,6002023-01-16 CRITICAL 9.8 CVE-2022-2317 The Simple Membership WordPress plugin before 4.1.3 allows user to change their membership at the registration stage due to insufficient checking of … Simple Membership 4.1.3+ Fix from $2,3002022-08-01 HIGH 8.8 CVE-2022-2273 The Simple Membership WordPress plugin before 4.1.3 does not properly validate the membership_level parameter when editing a profile, allowing member… Simple Membership 4.1.3+ Fix from $1,9502022-08-01 MEDIUM 6.1 CVE-2022-1724 The Simple Membership WordPress plugin before 4.1.1 does not properly sanitise and escape parameters before outputting them back in AJAX actions, lea… Simple Membership 4.1.1+ Fix from $1,6002022-06-13 MEDIUM 6.5 CVE-2022-0681 The Simple Membership WordPress plugin before 4.1.0 does not have CSRF check in place when deleting Transactions, which could allow attackers to make… Simple Membership 4.1.0+ Fix from $1,6002022-03-21 HIGH 8.8 CVE-2016-10884 The simple-membership plugin before 3.3.3 for WordPress has multiple CSRF issues. Simple Membership 3.3.3+ Fix from $1,9502019-08-14 MEDIUM 6.1 CVE-2017-18499 The simple-membership plugin before 3.5.7 for WordPress has XSS. Simple Membership 3.5.7+ Fix from $1,6002019-08-12 HIGH 8.8 CVE-2019-14328 The Simple Membership plugin before 3.8.5 for WordPress has CSRF affecting the Bulk Operation section. Simple Membership 3.8.5+ Fix from $1,9502019-07-28