| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2023-50376 | WordPress Simple Membership Plugin <= 4.3.8 is vulnerable to Unauth. Reflected Cross Site Scripting (XSS) | smp7, wp.insider | Simple Membership | High | 7.1 | 2023-12-19 08:27:46 | Deep Dive |
| CVE-2023-48746 | WordPress Community by PeepSo Plugin <= 6.2.6.0 is vulnerable to Cross Site Scripting (XSS) | PeepSo | Community by PeepSo – Social Network, Membership, Registration, User Profiles | High | 7.1 | 2023-11-30 16:25:31 | Deep Dive |
| CVE-2023-44150 | WordPress ProfilePress Plugin <= 4.13.2 is vulnerable to Sensitive Data Exposure | ProfilePress Membership Team | Paid Membership Plugin, Ecommerce, Registration Form, Login Form, User Profile & Restrict Content – ProfilePress | High | 7.5 | 2023-11-30 14:50:36 | Deep Dive |
| CVE-2023-47850 | WordPress Community by PeepSo Plugin <= 6.2.2.0 is vulnerable to Cross Site Scripting (XSS) | PeepSo | Community by PeepSo – Social Network, Membership, Registration, User Profiles | Medium | 6.5 | 2023-11-30 11:43:09 | Deep Dive |
| CVE-2023-47668 | WordPress Restrict Content Plugin <= 3.2.7 is vulnerable to Sensitive Data Exposure | StellarWP | Membership Plugin – Restrict Content | Medium | 5.3 | 2023-11-23 00:05:55 | Deep Dive |
| CVE-2023-32092 | WordPress Community by PeepSo Plugin <= 6.0.9.0 is vulnerable to Cross Site Request Forgery (CSRF) | PeepSo | Community by PeepSo – Social Network, Membership, Registration, User Profiles | 高危 | - | 2023-11-09 22:36:19 | Deep Dive |
| CVE-2023-3996 | ARMember Lite - Membership Plugin <= 4.0.16 - Authenticated (Administrator+) Stored Cross-Site Scripting | reputeinfosystems | ARMember – Membership Plugin, Content Restriction, Member Levels, User Profile & User signup | Medium | 4.4 | 2023-10-20 07:29:30 | Deep Dive |
| CVE-2023-5260 | SourceCodester Simple Membership System group_validator.php sql injection | SourceCodester | Simple Membership System | Medium | 6.3 | 2023-09-29 12:00:07 | Deep Dive |
| CVE-2023-5027 | SourceCodester Simple Membership System club_validator.php sql injection | SourceCodester | Simple Membership System | Medium | 6.3 | 2023-09-17 16:31:05 | Deep Dive |
| CVE-2023-4846 | SourceCodester Simple Membership System delete_member.php sql injection | SourceCodester | Simple Membership System | Medium | 6.3 | 2023-09-09 07:31:04 | Deep Dive |
| CVE-2023-4845 | SourceCodester Simple Membership System account_edit_query.php sql injection | SourceCodester | Simple Membership System | Medium | 6.3 | 2023-09-09 07:00:08 | Deep Dive |
| CVE-2023-4844 | SourceCodester Simple Membership System club_edit_query.php sql injection | SourceCodester | Simple Membership System | Medium | 6.3 | 2023-09-08 21:31:05 | Deep Dive |
| CVE-2023-4719 | Simple Membership <= 4.3.5 - Reflected Cross-Site Scripting | wpinsider-1 | Simple Membership | High | 7.2 | 2023-09-06 01:52:45 | Deep Dive |
| CVE-2023-3182 | Membership Plugin - Restrict Content < 3.2.3 - Reflected XSS | Unknown | Membership Plugin | 中危 | - | 2023-07-17 13:29:57 | Deep Dive |
| CVE-2023-2869 | WP-Members Membership <= 3.4.7.3 - Missing Authorization to Settings Update | cbutlerjr | WP-Members Membership Plugin | Medium | 4.3 | 2023-07-12 04:38:49 | Deep Dive |
| CVE-2023-3011 | ARMember <= 4.0.5 - Cross-Site Request Forgery | reputeinfosystems | ARMember – Membership Plugin, Content Restriction, Member Levels, User Profile & User signup | Medium | 6.5 | 2023-07-12 04:38:44 | Deep Dive |
| CVE-2023-2276 | WCFM Membership – WooCommerce Memberships for Multivendor Marketplace <= 2.10.7 - Unauthenticated Insecure Direct Object Reference to Arbitrary User Password Change | wclovers | WCFM Membership – WooCommerce Memberships for Multivendor Marketplace | Critical | 9.8 | 2023-05-20 03:35:57 | Deep Dive |
| CVE-2023-0514 | Membership Database <= 1.0 - Reflected XSS | Unknown | Membership Database | 中危 | - | 2023-05-08 13:58:11 | Deep Dive |
| CVE-2023-23830 | WordPress ProfilePress Plugin <= 4.5.4 is vulnerable to Cross Site Scripting (XSS) | ProfilePress Membership Team | ProfilePress | High | 7.1 | 2023-05-03 15:15:27 | Deep Dive |
| CVE-2023-23820 | WordPress ProfilePress Plugin <= 4.5.4 is vulnerable to Cross Site Scripting (XSS) | ProfilePress Membership Team | ProfilePress | Medium | 6.5 | 2023-05-03 12:39:09 | Deep Dive |