Known Vulnerabilities for Userpro by DeluxeThemes
Listed below are 10 of the newest known vulnerabilities associated with "Userpro" by "DeluxeThemes".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2025-68608 json | Missing Authorization vulnerability in DeluxeThemes Userpro userpro allows Exploiting Incorrectly Configured Access Control S... | Not Provided | 2025-12-24 | 2026-04-23 |
| CVE-2025-53444 json | Cross-Site Request Forgery (CSRF) vulnerability in DeluxeThemes Userpro userpro allows Cross Site Request Forgery.This issue ... | Not Provided | 2026-04-15 | 2026-04-23 |
| CVE-2025-22322 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in DeluxeThemes Private Me... | Not Provided | 2025-01-21 | 2026-04-23 |
| CVE-2025-22311 json | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Delu... | Not Provided | 2025-01-21 | 2026-04-23 |
| CVE-2024-56214 json | Path Traversal: '.../...//' vulnerability in DeluxeThemes Userpro userpro allows Path Traversal.This issue affects Userpro: f... | Not Provided | 2024-12-31 | 2026-04-23 |
| CVE-2024-56212 json | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in DeluxeThemes Userpro us... | Not Provided | 2024-12-31 | 2026-04-23 |
| CVE-2024-56211 json | Missing Authorization vulnerability in DeluxeThemes Userpro userpro.This issue affects Userpro: from n/a through <= 5.1.9. | Not Provided | 2024-12-31 | 2026-04-23 |
| CVE-2024-56210 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in DeluxeThemes Userpro us... | Not Provided | 2024-12-31 | 2026-04-23 |
| CVE-2024-35700 json | Incorrect Privilege Assignment vulnerability in DeluxeThemes Userpro userpro.This issue affects Userpro: from n/a through <= ... | Not Provided | 2024-06-04 | 2026-04-23 |
| CVE-2024-0701 json | The UserPro plugin for WordPress is vulnerable to Security Feature Bypass in all versions up to, and including, 5.1.6. This i... | Not Provided | 2024-02-05 | 2026-04-08 |