Known Vulnerabilities for Simple Membership by Wpinsider-1
Listed below are 6 of the newest known vulnerabilities associated with "Simple Membership" by "Wpinsider-1".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-42663 json | Unauthenticated Cross Site Scripting (XSS) in Simple Membership <= 4.7.2 versions. | Not Provided | 2026-06-15 | 2026-06-15 |
| CVE-2026-34886 json | Unauthenticated Broken Access Control in Simple Membership <= 4.7.1 versions. | Not Provided | 2026-06-15 | 2026-06-15 |
| CVE-2026-12093 json | The Simple Membership plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 4.7.5.... | Not Provided | 2026-06-18 | 2026-06-18 |
| CVE-2026-11855 json | The Simple Membership WordPress plugin before 4.7.5 does not verify the authenticity of Stripe webhook requests when no signi... | Not Provided | 2026-07-06 | 2026-07-06 |
| CVE-2024-22308 json | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in smp7, wp.Insider Simple Membership.This issue affects Si... | Not Provided | 2024-01-24 | 2026-04-28 |
| CVE-2023-50376 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in smp7, wp.Insider Simple... | Not Provided | 2023-12-19 | 2026-04-28 |