Input validation vulnerability in Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin 2.10.0

A popular plugin for WordPress called Ultimate Member, which helps users manage their profiles, registrations, logins, and memberships, has a security flaw that could put sensitive information at risk. This vulnerability allows hackers to add their own code to the plugin and gain access to the database. It affects all versions of the plugin up to version 2.10.0 and can be exploited by anyone, even without an account.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.