NA

CVE-2023-0631

Published: 20/03/2023 Updated: 07/11/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

The Paid Memberships Pro WordPress plugin prior to 2.9.12 does not prevent subscribers from rendering shortcodes that concatenate attributes directly into an SQL query.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

strangerstudios paid memberships pro