CVE-2026-15451 | MemberPress Corporate Accounts Plugin up to 1.5.39 on WordPress add_sub_account_user userdata dynamically-determined object attributes

SecurityVulns

A vulnerability, which was classified as critical, has been found in MemberPress Corporate Accounts Plugin up to 1.5.39 on WordPress. The affected element is the function add_sub_account_user. The manipulation of the argument userdata leads to dynamically-determined object attributes.

This vulnerability is referenced as CVE-2026-15451. Remote exploitation of the attack is possible. No exploit is available.VulDB Recent EntriesRead More