Known Vulnerabilities for Simple Membership by Unknown
Listed below are 10 of the newest known vulnerabilities associated with "Simple Membership" by "Unknown".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-88764 json | The Simple Membership WordPress plugin before 4.7.8 does not validate that the membership level supplied in a PayPal payment ... | Not Provided | 2026-09-13 | 2026-09-13 |
| CVE-2026-77194 json | The Simple Membership plugin for WordPress is vulnerable to Authentication Bypass leading to Administrator Account Takeover i... | Not Provided | 2026-09-01 | 2026-09-01 |
| CVE-2026-74000 json | Contributor Broken Access Control in Simple Membership <= 4.8.2 versions. | Not Provided | 2026-09-17 | 2026-09-17 |
| CVE-2026-66712 json | Unauthenticated Broken Access Control in Simple Membership <= 4.7.8 versions. | Not Provided | 2026-08-06 | 2026-08-06 |
| CVE-2026-18203 json | A flaw was found in the group policy evaluation logic of Keycloak, an identity and access management solution. When a group p... | Not Provided | 2026-07-31 | 2026-07-31 |
| CVE-2026-15931 json | The Simple Membership WordPress plugin before 4.7.8 does not sanitise a subscriber name value received from an unauthenticate... | Not Provided | 2026-08-03 | 2026-08-03 |
| CVE-2026-15930 json | The Simple Membership WordPress plugin before 4.7.8 does not verify whether user creation failed during registration before u... | Not Provided | 2026-08-03 | 2026-08-03 |
| CVE-2026-14936 json | The Simple Membership WordPress plugin before 4.7.7 does not verify that a PayPal payment notification was sent to the site's... | Not Provided | 2026-08-06 | 2026-08-07 |
| CVE-2026-11855 json | The Simple Membership WordPress plugin before 4.7.5 does not verify the authenticity of Stripe webhook requests when no signi... | Not Provided | 2026-07-06 | 2026-07-06 |
| CVE-2026-8151 json | The Simple Membership MailChimp Integration WordPress plugin before 1.9.8 does not have CSRF checks in its settings page, all... | Not Provided | 2026-09-02 | 2026-09-02 |