Description
WordPress Plugin Simple Membership is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently change addon settings. WordPress Plugin Simple Membership version 3.8.5 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 3.8.6 or latest
References
Related Vulnerabilities
UpdraftPlus WordPress Backup Multiple Vulnerabilities (1.16.58)
Gutenberg Template Library & Redux Framework Multiple Cross-Site Scripting Vulnerabilities (3.6.0.2)
Oracle HTTP Server CVE-2019-2414 Vulnerability (CVE-2019-2414)
TYPO3 Improper Input Validation Vulnerability (CVE-2009-0258)
OpenSSL Use of a Broken or Risky Cryptographic Algorithm Vulnerability (CVE-2022-1434)