| CVE-2022-4693 | User Verification < 1.0.94 - Authentication Bypass | Unknown | User Verification | 超危 | - | 2023-01-23 14:31:54 | Deep Dive |
| CVE-2022-4060 | User Post Gallery <= 2.19 - Unauthenticated RCE | Unknown | User Post Gallery | 超危 | - | 2023-01-16 15:38:05 | Deep Dive |
| CVE-2023-0254 | Simple Membership WP user Import <= 1.7 - Authenticated (Admin+) SQL Injection | wpinsider-1 | Simple Membership WP user Import | High | 7.2 | 2023-01-12 17:34:26 | Deep Dive |
| CVE-2022-4049 | WP User <= 7.0 - Unauthenticated SQLi | Unknown | WP User | 超危 | - | 2023-01-02 21:49:15 | Deep Dive |
| CVE-2022-4697 | ProfilePress <= 4.5.0 - Authenticated (Administrator+) Stored Cross-Site Scripting | properfraction | Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress | Medium | 5.5 | 2022-12-23 15:11:46 | Deep Dive |
| CVE-2022-4698 | ProfilePress <= 4.5.0 - Authenticated (Administrator+) Stored Cross-Site Scripting via Form Settings | properfraction | Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress | Medium | 5.5 | 2022-12-23 15:09:51 | Deep Dive |
| CVE-2022-4519 | WP User <= 7.0 - Authenticated (Administrator+) Stored Cross-Site Scripting | walkeprashant | WP User – Custom Registration Forms, Login and User Profile | Medium | 5.5 | 2022-12-15 19:19:18 | Deep Dive |
| CVE-2022-3880 | AntiHacker < 4.20 - Subscriber+ Arbitrary Plugin Installation | Unknown | Disable Json API, Login Lockdown, XMLRPC, Pingback, Stop User Enumeration Anti Hacker Scan | 中危 | - | 2022-12-12 17:54:54 | Deep Dive |
| CVE-2022-3912 | User Registration < 2.2.4.1 - Subscriber+ Arbitrary File Upload | Unknown | User Registration | 高危 | - | 2022-12-12 17:54:36 | Deep Dive |
| CVE-2022-3383 | Ultimate Member – User Profile, User Registration, Login & Membership Plugin <= 2.5.0 - Authenticated (Admin+) Remote Code Execution via Multi-Select | ultimatemember | Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin | High | 7.2 | 2022-11-29 20:40:10 | Deep Dive |
| CVE-2022-3384 | Ultimate Member – User Profile, User Registration, Login & Membership Plugin <= 2.5.0 - Authenticated (Admin+) Limited Remote Code Execution via um_populate_dropdown_options | ultimatemember | Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin | High | 7.2 | 2022-11-29 20:39:57 | Deep Dive |
| CVE-2022-3361 | Ultimate Member – User Profile, User Registration, Login & Membership Plugin <= 2.5.0 - Authenticated (Contributor+) Directory Traversal via Shortcodes | ultimatemember | Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin | Medium | 4.3 | 2022-11-29 20:39:44 | Deep Dive |
| CVE-2022-3865 | WP User Merger < 1.5.3 - Admin+ SQLi via ID | Unknown | WP User Merger | 高危 | - | 2022-11-28 13:50:09 | Deep Dive |
| CVE-2022-3848 | WP User Merger < 1.5.3 - Admin+ SQLi via wpsu_user_id | Unknown | WP User Merger | 高危 | - | 2022-11-28 13:47:20 | Deep Dive |
| CVE-2022-3849 | WP User Merger < 1.5.3 - Admin+ SQLi via user_id | Unknown | WP User Merger | 高危 | - | 2022-11-28 13:47:17 | Deep Dive |
| CVE-2021-24649 | WP User Frontend < 3.5.29 - Obscure Registration as Admin | Unknown | WP User Frontend | 超危 | - | 2022-11-21 00:00:00 | Deep Dive |
| CVE-2022-3895 | Potential XSS in common user interface component library | Hallo Welt! GmbH | Common User Interface Component | Medium | 4.0 | 2022-11-15 14:24:49 | Deep Dive |
| CVE-2022-3578 | ProfileGrid < 5.1.1 - Reflected Cross-Site Scripting | Unknown | ProfileGrid – User Profiles, Memberships, Groups and Communities | 中危 | - | 2022-11-14 00:00:00 | Deep Dive |
| CVE-2022-3366 | PublishPress Capabilities < 2.5.2 - Admin+ PHP Objection Injection | Unknown | PublishPress Capabilities – User Role Access, Editor Permissions, Admin Menus | 高危 | - | 2022-10-31 00:00:00 | Deep Dive |
| CVE-2022-3419 | Automatic User Roles Switcher < 1.1.2 - Subscriber+ Privilege Escalation | Unknown | Automatic User Roles Switcher | 中危 | - | 2022-10-31 00:00:00 | Deep Dive |