User Registration & Membership vulnerability

The User Registration & Membership WordPress plugin before 5.2.8 does not check the capability of the user making a membership purchase, and does not validate the payment method or the plan submitted with it, allowing any authenticated user such as a subscriber to be granted the WordPress role attached to a paid plan without paying for it. Where the site owner has mapped a plan to a privileged role, this leads to privilege escalation up to administrator.

Published 13 Sep 2026Updated 13 Sep 20261 sources
CVSS 7.5

Record history

Record created from the first normalized source observation.
Metadata and source references refreshed.