Medium 5.3 Unfixed
2026-03-19≤ 10.2.2
WordPress WP eMember plugin <= v10.2.2 - Broken Access Control vulnerability
Minimum safe version
10.7.0
Update to 10.7.0 or later to address 10 fixable vulnerabilities
WordPress WP eMember plugin <= v10.2.2 - Broken Access Control vulnerability
WordPress WP eMember theme <= v10.2.2 - Reflected Cross Site Scripting (XSS) vulnerability
CVE-2024-5081
CVE-2024-5075
CVE-2024-5076
WP eMember <= 10.6.6 - Reflected Cross-Site Scripting via $_SERVER['REQUEST_URI']
CVE-2024-5080
CVE-2024-5074
CVE-2024-5079
CVE-2024-5715
CVE-2024-5077
CVE-2024-4749