Pie Register – User Registration, Profiles & Content Restriction

Vulnerabilities 34Slug pie-registerLatest version 3.8.4.9WordPress.org →

Minimum safe version

3.8.4.9

Update to 3.8.4.9 or later to address 32 fixable vulnerabilities

Latest available3.8.4.9 Affected up to2.0.15
N/A
2026-04-03< 3.8.4.9

Pie Register – User Registration, Profiles & Content Restriction <= 3.8.4.8 - Missing Authorization to Unauthenticated Registration Form Status Modification

N/A
2025-07-09< 3.7.1.5

WordPress Pie Register Plugin ≤ 3.7.1.4 Authentication Bypass RCE

N/A
< 2.0.15

Pie Register &lt;= 2.0.14 - Cross-Site Scripting (XSS)

N/A
< 2.0.16

Pie Register 2.0.14-2.0.15 - SQL Injection

N/A
< 2.0.16

Pie Register 2.0.14-2.0.15 - Privilege Escalation

N/A
< 3.0.18

Pie Register &lt;= 3.0.17 - Unauthenticated Cross-Site Scripting (XSS)

N/A
< 3.7.2.4

Pie Register &lt; 3.7.2.4 - Open Redirect

N/A
2015-03-09< 2.0.15

Pie Register < 2.0.15 - Cross-Site Scripting

N/A
2015-05-04≥ 2.0.14 and ≤ 2.0.15

Pie Register 2.0.14-2.0.15 - SQL Injection

N/A
2015-05-04≥ 2.0.14 and ≤ 2.0.15

Registration Forms – User Profile, Custom Registration Form, Login Form, Invitation-Based Registrations for WordPress 2.0.14 - 2.0.15 - Authentication Bypass

N/A
2018-10-24< 3.0.18

Pie Register < 3.0.18 - Unauthenticated Cross-Site Scripting

N/A
2021-10-21< 3.7.2.4

Pie Register – User Registration Forms. Invitation based registrations, Custom Login, Payments <= 3.7.2.3 - Open Redirect

Medium 6.5
2023-02-28< 3.8.1.3

WordPress Pie Register Plugin < 3.8.1.3 is vulnerable to Arbitrary Content Deletion

N/A
2015-07-04< 2.0.16

WordPress Pie Register Plugin <= 2.0.15 - Privilege Escalation

N/A
2015-07-04< 2.0.16

WordPress Pie Register Plugin <= 2.0.15 - SQL Injection

N/A
2015-07-04< 2.0.15

WordPress Pie Register Plugin <= 2.0.14 - Cross Site Scripting

N/A
2018-06-20< 3.0.10

WordPress Pie Register plugin <= 3.0.9 - Authenticated Blind SQL Injection (SQLi) vulnerability

N/A
2018-10-29< 3.0.18

WordPress Pie Register plugin <= 3.0.17 - Unauthenticated Cross-Site Scripting (XSS) vulnerability

N/A
2021-10-21< 3.7.2.4

WordPress Pie Register plugin <= 3.7.2.3 - Open Redirect vulnerability