CVE-2026-12497 | Paid Membership Plugin up to 4.16.17 on WordPress Registration privileges management

SecurityVulns

A vulnerability, which was classified as problematic, has been found in Paid Membership Plugin, Ecommerce, User Registration Form, Login Form and User Profile & Restrict Content Plugin up to 4.16.17 on WordPress. This issue affects some unknown processing of the component Registration Handler. The manipulation leads to improper privilege management.

This vulnerability is traded as CVE-2026-12497. It is possible to initiate the attack remotely. There is no exploit available.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More