8.1
/ 10
HIGH
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Description
CVE-2025-2563 The User Registration & Membership WordPress plugin before 4.1.2 does not prevent users to set their account role when the Membership Addon is enabled, leading to a privilege escalation issue and allowing unauthenticated users to gain...
Basic Information
ID
ACF85111-96A2-5629-8D81-7440CC4E0D7F
Published
Apr 18, 2026 at 09:34
Modified
Apr 18, 2026 at 09:36