Description
The Paid Memberships Pro WordPress plugin before 2.12.9 does not prevent user with at least the contributor role from leaking other users' sensitive metadata.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-17040 | The Paid Memberships Pro WordPress plugin before 2.12.9 does not prevent user with at least the contributor role from leaking other users' sensitive metadata. |
References
History
Fri, 28 Mar 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wordpress
Wordpress paid Memberships Pro |
|
| CPEs | cpe:2.3:a:wordpress:paid_memberships_pro:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Wordpress
Wordpress paid Memberships Pro |
|
| Metrics |
ssvc
|
Wed, 05 Feb 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Strangerstudios
Strangerstudios paid Memberships Pro |
|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:a:strangerstudios:paid_memberships_pro:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Strangerstudios
Strangerstudios paid Memberships Pro |
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2025-03-28T18:33:06.391Z
Reserved: 2024-02-06T15:57:13.837Z
Link: CVE-2024-1279
Updated: 2024-08-01T18:33:25.359Z
Status : Modified
Published: 2024-03-11T18:15:17.950
Modified: 2025-03-28T19:15:17.827
Link: CVE-2024-1279
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD