Known Vulnerabilities for products from Properfraction

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Properfraction".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2025-58596 json Not Provided 2025-09-03 2026-04-23
CVE-2024-3210 json The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress p... Not Provided 2024-04-10 2026-04-08
CVE-2024-2867 json The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress p... Not Provided 2024-05-02 2026-04-08
CVE-2024-2861 json The ProfilePress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ProfilePress User Panel widget in ... Not Provided 2024-05-23 2026-04-08
CVE-2024-1806 json The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress p... Not Provided 2024-03-13 2026-04-08
CVE-2024-1570 json The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress p... Not Provided 2024-02-29 2026-04-08
CVE-2024-1535 json The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress p... Not Provided 2024-03-13 2026-04-08
CVE-2024-1519 json The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress p... Not Provided 2024-02-29 2026-04-08
CVE-2024-1409 json The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress p... Not Provided 2024-03-13 2026-04-08
CVE-2024-1408 json The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress p... Not Provided 2024-02-29 2026-04-08
CVE-2024-1046 json The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress p... Not Provided 2024-02-05 2026-04-08
CVE-2023-50882 json Missing Authorization vulnerability in properfraction ProfilePress wp-user-avatar allows Exploiting Incorrectly Configured Ac... Not Provided 2024-12-09 2026-04-23
CVE-2023-47184 json Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Proper Fraction LLC. Admin Bar & Dashboard Access Control p... 4.8 - MEDIUM 2023-11-06 2023-11-14
CVE-2023-46639 json Not Provided 2025-01-02 2026-04-23
CVE-2023-44150 json ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 7.5 - HIGH 2023-11-30 2023-12-06
CVE-2023-36528 json Not Provided 2024-12-13 2026-04-23
CVE-2023-23996 json Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in ProfilePress Membership Team ProfilePress plugin <= 4.5.3 v... 4.8 - MEDIUM 2023-04-06 2023-11-07
CVE-2023-23830 json Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in ProfilePress Membership Team ProfilePress plugin <= 4.5.4 vers... 6.1 - MEDIUM 2023-05-03 2023-05-27
CVE-2023-23820 json Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in ProfilePress Membership Team ProfilePress plugin <= ... 5.4 - MEDIUM 2023-05-03 2023-05-06
CVE-2022-47444 json Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in ProfilePress Membership Team Paid Membership Plugin, Ecommerce,... 6.1 - MEDIUM 2023-03-29 2023-11-07