Lucene search

K
patchstackMuhamad HidayatPATCHSTACK:2E5396E360E6674F6ABE9B152CDD7503
HistoryFeb 25, 2022 - 12:00 a.m.

WordPress Simple Membership plugin <= 4.0.9 - Arbitrary Transaction Deletion via Cross-Site Request Forgery (CSRF) vulnerability

2022-02-2500:00:00
Muhamad Hidayat
patchstack.com
6
wordpress
simple membership
plugin
cross-site request forgery (csrf)
vulnerability
muhamad hidayat
update

EPSS

0.001

Percentile

26.3%

Arbitrary Transaction Deletion via Cross-Site Request Forgery (CSRF) vulnerability discovered by Muhamad Hidayat in WordPress Simple Membership plugin (versions <= 4.0.9).

Solution

           Update the WordPress Simple Membership plugin to the latest available version (at least 4.1.0).

EPSS

0.001

Percentile

26.3%

Related for PATCHSTACK:2E5396E360E6674F6ABE9B152CDD7503