Input validation vulnerability in Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin 2.9.1

The WordPress plugin called “Ultimate Member” has a security issue where hackers can inject code into the search function and access private information from the website’s database. This vulnerability exists in all versions up to 2.9.1. It is important to update the plugin to the latest version to protect against this type of attack.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.