ZeroHour

CVE-2024-1279

PoC
CVSS 3.1
4.3 medium
EPSS
<1%p44
Published
()
Modified
Description

The Paid Memberships Pro WordPress plugin before 2.12.9 does not prevent user with at least the contributor role from leaking other users' sensitive metadata.

Vendors
strangerstudios
Products
paid memberships pro
Ecosystems
WordPress
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.