CVE-2022-2273 – The Simple Membership WordPress plugin before 4.1.3 does not properly validate the members …

Vuln ID: CVE-2022-2273

Published:  2022-08-01  13:15:10Z

Description: The Simple Membership WordPress plugin before 4.1.3 does not properly validate the membership_level parameter when editing a profile, allowing members to escalate to a higher membership level by using a crafted POST request.

Source: NVD.NIST.GOV