Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
s2member pro vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2024-12562
The s2Member Pro plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 241216 via deserialization of untrusted input from the 's2member_pro_remote_op' vulnerable parameter. This makes it possible for unauthenticated malicious u...
Wp Sharks S2member Pro
8.8
CVSSv3
CVE-2024-12563
The s2Member Pro plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 250214 via the 'template' attribute. This makes it possible for authenticated attackers, with contributor-level and above permissions, to include and execut...
Wp Sharks S2member Pro
7.1
CVSSv3
CVE-2025-26879
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Cristián Lávaque s2Member Pro allows Reflected XSS. This issue affects s2Member Pro: from n/a up to and including 241216.
Cristián Lávaque S2member Pro
4.3
CVSSv2
CVE-2011-5082
Cross-site scripting (XSS) vulnerability in the s2Member Pro plugin prior to 111220 for WordPress allows remote malicious users to inject arbitrary web script or HTML via the s2member_pro_authnet_checkout[coupon] parameter (aka Coupon Code field).
S2member S2member
S2member S2member 110604
S2member S2member 110605
S2member S2member 110606
S2member S2member 110617
S2member S2member 110620
S2member S2member 110708
S2member S2member 110709
S2member S2member 110710
S2member S2member 110731
S2member S2member 110812
S2member S2member 110815
7.5
CVSSv3
CVE-2024-31237
Improper Privilege Management vulnerability in WP Sharks s2Member Pro allows Privilege Escalation.This issue affects s2Member Pro: from n/a up to and including 240315.
9
CVSSv3
CVE-2024-51815
Improper Control of Generation of Code ('Code Injection') vulnerability in WP Sharks s2Member Pro allows Code Injection.This issue affects s2Member Pro: from n/a up to and including 241114.
Preferred Score:
CVSSv3
CVSSv2
CVSSv3
CVSSv4
EPSS
VMScore
Recommendations:
physical
picture gallery
CVE-2025-30352
administrator privileges
gdpr tools
CVE-2025-26007
CVE-2025-24514
CVE-2025-26581
CVE-2025-1098
wp multistore locator
CVE-2025-26986
nous ouvert utile et simple
command injection
Home
/
Search Results
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started