CVE-2026-19660 | DiviEngine Divi Membership Plugin up to 2.3.0 on WordPress process_paypal_callback paypal_param improper authentication (EUVD-2026-91170)
A vulnerability was found in DiviEngine Divi Membership Plugin up to 2.3.0 on WordPress. It has been classified as critical. The affected element is the function process_paypal_callback. Performing a manipulation of the argument paypal_param results in improper authentication.
This vulnerability is known as CVE-2026-19660. Remote exploitation of the attack is possible. No exploit is available.VulDB Recent EntriesRead More