Input validation vulnerability in CM Registration – Tailored tool for seamless login and invitation-based registrations 2.5.6

The CM Registration plugin for WordPress, which allows for easy login and registration through invitations, is at risk for an Open Redirect vulnerability in all versions up to 2.5.6. This is because the plugin does not properly check the redirect URL provided in the ‘redirect_url’ parameter. This could potentially lead to attackers redirecting users to harmful websites if they are able to deceive them into clicking on a link.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.