Eklenti güvenlik geçmişi
Ultimate Member güvenlik açıkları
ABD Ulusal Güvenlik Açığı Veritabanı’nda (NVD) Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin eklentisi için 49 açık kaydı bulunuyor; en yenisi 3 Ekim 2026 tarihli. Bunların 22 tanesi kritik veya yüksek önemde, 22 tanesi oturum açmadan istismar edilebiliyor. Güncel sürüm 2.14.0.
- Toplam kayıt
- 49
- Kritik veya yüksek
- 22
- Oturumsuz istismar
- 22
- Son kayıt
- 3 Ekim 2026
Bilinen açık kayıtları
En yeniden eskiye. Her kaydın özgün metni NVD’de.
yetki yükseltme
Etkilenen sürümler: 2.13.1 ve öncesi
Ultimate Member’deki “Kullanıcı Tarafından Kontrol Edilen Anahtar Yoluyla Yetki Atlama” güvenlik açığı (Ultimate Member ultimate-member), ayrıcalık yükseltmesine olanak tanır. Bu sorun, Ultimate Member adresindeki sürümleri etkiler: n/a’dan 2.13.1’e kadar.
depolanmış siteler arası betik çalıştırma (XSS)
Etkilenen sürümler: 2.13.1 ve öncesi · Oturum açmadan istismar edilebilir
WordPress için geliştirilen “Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin” eklentisi, yetersiz girdi temizleme ve çıktı kaçış işlemleri nedeniyle 2.13.1 sürümü dahil olmak üzere bu sürüme kadar olan tüm sürümlerinde “form_id” parametresi aracılığıyla depolanmış siteler arası komut enjeksiyonu (Stored Cross-Site Scripting) saldırılarına karşı savunmasızdır. Bu durum, kimlik doğrulaması yapılmamış saldırganların, bir kullanıcı enjekte edilmiş sayfaya her eriştiğinde çalışacak şekilde sayfalara rastgele web komut dosyaları enjekte etmesine olanak tanır. Enjekte edilen yük, update_user_meta() işlevi aracılığıyla kayıtlı kullanıcının 'submitted' usermeta'sında depolanır ve yalnızca bir yönetici, wp-admin Kullanıcılar modülünde etkilenen kullanıcı kaydını açtığında tetiklenir; bu işlem, jQuery .html() aracılığıyla kaçış işlenmemiş çıktıyı ekler.
Türkçe kayıt ve ne yapmalıeksik yetki denetimi
Etkilenen sürümler: 2.13.1 ve öncesi · Oturum açmadan istismar edilebilir
WordPress için geliştirilen “Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin” eklentisi, 2.13.1 sürümü dahil olmak üzere tüm sürümlerinde yetkilendirme atlama güvenlik açığına maruz kalmaktadır. Bu durum, eklentinin bir kullanıcının belirli bir eylemi gerçekleştirme yetkisine sahip olup olmadığını düzgün bir şekilde doğrulamamasından kaynaklanmaktadır. Bu durum, kimlik doğrulaması yapılmamış saldırganların, herkese açık wp_ajax_nopriv_um_get_members uç noktasını sorgulayarak, gizlilik kısıtlamasına tabi üye profil alan değerlerini (sahibine özel, üyelere özel veya rol kısıtlamalı olarak açıkça yapılandırılmış alanlar dahil) görüntülemelerine olanak tanır. Uç noktanın gerektirdiği nonce ('um-frontend-nonce'), wp_localize_script aracılığıyla tüm kimlik doğrulaması yapılmamış ziyaretçilere gönderilir; bu da anlamlı bir erişim kontrolü sağlamadığı ve herhangi bir anonim ziyaretçinin uç noktanın kimlik doğrulama gereksinimlerini karşılayabileceği anlamına gelir.
Türkçe kayıt ve ne yapmalıSQL enjeksiyonu
Etkilenen sürümler: 2.13.1 ve öncesi
Ultimate Member'de bir SQL komutunda kullanılan özel öğelerin yanlış şekilde etkisiz hale getirilmesi ('SQL Enjeksiyonu') güvenlik açığı Ultimate Member ultimate-member, Kör SQL Enjeksiyonuna olanak tanır. Bu sorun, Ultimate Member sürümlerini etkiler: n/a'dan 2.13.1'e kadar.
siteler arası betik çalıştırma (XSS)
Etkilenen sürümler: 2.13.1 öncesi · Oturum açmadan istismar edilebilir
2.13.1 sürümünden önceki Ultimate Member WordPress eklentisi, kullanıcı tarafından girilen profil adlarından türetilen bir değeri sayfa başlığına yazdırmadan önce kaçış karakterleriyle işleme tabi tutmaz ve kendi temizleme işlemi tamamlandıktan sonra bu değer içindeki HTML varlıklarını çözerek, hesap açan kimlik doğrulaması yapılmamış saldırganların, yönetici dahil herhangi bir ziyaretçinin profilini görüntülediğinde çalışacak JavaScript kodunu depolamasına olanak tanır.
hassas bilgi ifşası
Etkilenen sürümler: 2.13.0 öncesi · Oturum açmadan istismar edilebilir
2.13.0 sürümünden önceki Ultimate Member WordPress eklentisi, kimliği doğrulanmamış ziyaretçilere profil etkinliklerini göstermeden önce, bir yorumun onaylanıp onaylanmadığını veya yorumun ait olduğu profilin özel olup olmadığını kontrol etmez; bu da ziyaretçilerin hâlâ denetime bekleyen yorumların içeriğini okumasına olanak tanır.
yetki yükseltme
Etkilenen sürümler: 2.13.0 öncesi · Oturum açmadan istismar edilebilir
2.13.0 sürümünden önceki Ultimate Member WordPress eklentisi, bir profil formunun izin verdiği rol kümesini belirleyemediğinde gönderilen rol seçimini doğrulamaz ve değeri, formun kendi izin listesi yerine sitenin kayıtlı rol adlarıyla karşılaştırır; bu da, 2.13.0 sürümünden önceki Ultimate Member WordPress eklentisi aracılığıyla kayıt olan kimliği doğrulanmamış kullanıcıların kendilerine keyfi yetkiler vermesine ve yönetici düzeyinde erişim elde etmesine olanak tanır.
depolanmış siteler arası betik çalıştırma (XSS)
Etkilenen sürümler: 2.12.1 ve öncesi
The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Textarea Profile Field with HTML Support (DOM Gadget via id Attribute) in all versions up to, and including, 2.12.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with subscriber-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. This is possible because the wp_kses 'templates' allowlist permits the id attribute on div elements but does not neutralize unescaped quotes within its value; when pickadate.js concatenates the stored id value into an HTML string via jQuery .html() on profile page load, the smuggled onfocus and autofocus attribute syntax breaks out of attribute context and executes as JavaScript.
yetki yükseltme
Etkilenen sürümler: 2.12.1 öncesi · Oturum açmadan istismar edilebilir
The Ultimate Member WordPress plugin before 2.12.1 does not filter administrator-level capabilities from the roles it makes selectable on its registration forms, and its post-registration safeguard against elevated accounts is disabled by default, allowing unauthenticated users to register with a site-defined role that carries administrator capabilities and gain administrative access, when such a role exists and a role-selection field is present on a published registration form.
SQL enjeksiyonu
Etkilenen sürümler: 2.10.1 ve öncesi · Oturum açmadan istismar edilebilir
The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to blind SQL Injection via the search parameter in all versions up to, and including, 2.10.1 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database. This vulnerability was partially patched in version 2.9.2 when initially addressing CVE-2025-0308.
güvenlik
Etkilenen sürümler: 2.12.0 öncesi
The Ultimate Member WordPress plugin before 2.12.0 does not properly sanitise and escape the value of custom textarea profile fields before outputting it on user profiles, allowing authenticated users with Subscriber-level access and above to store JavaScript that executes when any user, including an administrator, views the affected profile.
depolanmış siteler arası betik çalıştırma (XSS)
Etkilenen sürümler: 2.11.4 ve öncesi
The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'about_me' parameter in all versions up to, and including, 2.11.4 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with subscriber-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
hesap ele geçirme
Etkilenen sürümler: 2.11.4 ve öncesi
The Ultimate Member plugin for WordPress is vulnerable to Account Takeover via Password Reset Link Disclosure in all versions up to and including 2.11.4. This is due to a chain of three logic bugs: (1) an MD5 hash fallback in get_directory_by_hash() that allows any post to be used as a member directory by computing SUBSTRING(MD5(post_id), 11, 5), (2) a strstr() parsing logic flaw in post_data() that allows bypassing WordPress's protected meta key restrictions by placing '_um_' anywhere in the meta key name rather than at the start, and (3) missing field name validation in build_user_card_data() that allows arbitrary field names including 'password_reset_link' to be passed to um_filtered_value(). This makes it possible for authenticated attackers with Contributor-level access and above to create a malicious post via XMLRPC with crafted meta fields, use the MD5 fallback to point the member directory AJAX handler to their post, inject 'password_reset_link' into the tagline_fields configuration, and leak live password reset URLs for all users in the member directory response, including administrators.
depolanmış siteler arası betik çalıştırma (XSS)
Etkilenen sürümler: 2.11.1 ve öncesi
The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the user description field in all versions up to, and including, 2.11.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with subscriber level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. The vulnerability is only exploitable when "HTML support for user description" is enabled in Ultimate Member settings.
hassas bilgi ifşası
Etkilenen sürümler: 2.11.2 ve öncesi
The Ultimate Member plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.11.2. This is due to the '{usermeta:password_reset_link}' template tag being processed within post content via the '[um_loggedin]' shortcode, which generates a valid password reset token for the currently logged-in user viewing the page. This makes it possible for authenticated attackers, with Contributor-level access and above, to craft a malicious pending post that, when previewed by an Administrator, generates a password reset token for the Administrator and exfiltrates it to an attacker-controlled server, leading to full account takeover.
yansıtılan siteler arası betik çalıştırma (XSS)
Etkilenen sürümler: 2.11.1 ve öncesi · Oturum açmadan istismar edilebilir
The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the filter parameters (e.g., 'filter_first_name') in all versions up to, and including, 2.11.1 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.
depolanmış siteler arası betik çalıştırma (XSS)
Etkilenen sürümler: 2.11.0 ve öncesi
The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode attributes in all versions up to, and including, 2.11.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
hassas bilgi ifşası
Etkilenen sürümler: 2.11.0 ve öncesi · Oturum açmadan istismar edilebilir
The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.11.0 via the ajax_get_members function. This is due to the use of a predictable low-entropy token (5 hex characters derived from md5 of post ID) to identify member directories and insufficient authorization checks on the unauthenticated AJAX endpoint. This makes it possible for unauthenticated attackers to extract sensitive data including usernames, display names, user roles (including administrator accounts), profile URLs, and user IDs by enumerating predictable directory_id values or brute-forcing the small 16^5 token space.
eksik yetki denetimi
Etkilenen sürümler: 2.11.0 ve öncesi
The Ultimate Member plugin for WordPress is vulnerable to Profile Privacy Setting Bypass in all versions up to, and including, 2.11.0. This is due to a flaw in the secure fields mechanism where field keys are stored in the allowed fields list before the `required_perm` check is applied during rendering. This makes it possible for authenticated attackers with Subscriber-level access to modify their profile privacy settings (e.g., setting profile to "Only me") via direct parameter manipulation, even when the administrator has explicitly disabled the option for their role.
depolanmış siteler arası betik çalıştırma (XSS)
Etkilenen sürümler: 2.11.0 ve öncesi
The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the YouTube Video 'value' field in all versions up to, and including, 2.11.0. This is due to insufficient input sanitization and output escaping on user-supplied YouTube video URLs in the `um_profile_field_filter_hook__youtube_video()` function. This makes it possible for authenticated attackers, with Subscriber-level access and above, to inject arbitrary web scripts in pages that execute whenever a user accesses the injected user's profile page.
uzaktan kod çalıştırma
Etkilenen sürümler: 2.10.3 ve öncesi
Improper Control of Generation of Code ('Code Injection') vulnerability in Ultimate Member Ultimate Member ultimate-member allows Code Injection.This issue affects Ultimate Member: from n/a through <= 2.10.3.
SQL enjeksiyonu
Etkilenen sürümler: 2.10.0 ve öncesi · Oturum açmadan istismar edilebilir
The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to time-based SQL Injection via the 'search' parameter in all versions up to, and including, 2.10.0 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.
SQL enjeksiyonu
Etkilenen sürümler: 2.9.2 ve öncesi
The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to second-order SQL Injection via filenames in all versions up to, and including, 2.9.2 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with access to upload files and manage filenames through a third-party plugin like a File Manager, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database. The risk of this vulnerability is very minimal as it requires a user to be able to manipulate filenames in order to successfully exploit.
hassas bilgi ifşası
Etkilenen sürümler: 2.9.1 ve öncesi · Oturum açmadan istismar edilebilir
The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 2.9.1 through different error messages in the responses. This makes it possible for unauthenticated attackers to exfiltrate data from wp_usermeta table.
SQL enjeksiyonu
Etkilenen sürümler: 2.9.1 ve öncesi · Oturum açmadan istismar edilebilir
The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to time-based SQL Injection via the search parameter in all versions up to, and including, 2.9.1 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.
eksik yetki denetimi
Etkilenen sürümler: 2.8.9 ve öncesi
The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to unauthorized profile picture updates due to a missing capability check on the wp_ajax_um_resize_image() and ajax_resize_image() functions in all versions up to, and including, 2.8.9. This makes it possible for authenticated attackers, with subscriber-level access and above, to update the profile pictures of other users.
siteler arası istek sahteciliği (CSRF)
Etkilenen sürümler: 2.8.6 ve öncesi · Oturum açmadan istismar edilebilir
The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.8.6. This is due to missing or incorrect nonce validation on the admin_init or user_action_hook function. This makes it possible for unauthenticated attackers to modify a users membership status via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.
depolanmış siteler arası betik çalıştırma (XSS)
Etkilenen sürümler: 2.8.6 ve öncesi
The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'um_loggedin' shortcode in all versions up to, and including, 2.8.6 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
depolanmış siteler arası betik çalıştırma (XSS)
Etkilenen sürümler: 2.8.4 ve öncesi
The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Skype and Spotify URL parameters in all versions up to, and including, 2.8.4 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with subscriber-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
SQL enjeksiyonu
Etkilenen sürümler: Kayıtta belirtilmemiş · Oturum açmadan istismar edilebilir
The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to SQL Injection via the 'sorting' parameter in versions 2.1.3 to 2.8.2 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.
depolanmış siteler arası betik çalıştırma (XSS)
Etkilenen sürümler: 2.8.3 ve öncesi · Oturum açmadan istismar edilebilir
The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the several parameters in all versions up to, and including, 2.8.3 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
siteler arası istek sahteciliği (CSRF)
Etkilenen sürümler: 2.6.0 ve öncesi · Oturum açmadan istismar edilebilir
Cross-Site Request Forgery (CSRF) vulnerability in Ultimate Member plugin <= 2.6.0 versions.
güvenlik
Etkilenen sürümler: 2.6.7 öncesi · Oturum açmadan istismar edilebilir
The Ultimate Member WordPress plugin before 2.6.7 does not prevent visitors from creating user accounts with arbitrary capabilities, effectively allowing attackers to create administrator accounts at will. This is actively being exploited in the wild.
uzaktan kod çalıştırma
Etkilenen sürümler: 2.5.0 ve öncesi
The Ultimate Member plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and including, 2.5.0 via the populate_dropdown_options function that accepts user supplied input and passes it through call_user_func(). This is restricted to non-parameter PHP functions like phpinfo(); since user supplied parameters are not passed through the function. This makes it possible for authenticated attackers, with administrative privileges, to execute code on the server.
uzaktan kod çalıştırma
Etkilenen sürümler: 2.5.0 ve öncesi
The Ultimate Member plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and including, 2.5.0 via the get_option_value_from_callback function that accepts user supplied input and passes it through call_user_func(). This makes it possible for authenticated attackers, with administrative capabilities, to execute code on the server.
uzaktan kod çalıştırma
Etkilenen sürümler: 2.5.0 ve öncesi
The Ultimate Member plugin for WordPress is vulnerable to directory traversal in versions up to, and including 2.5.0 due to insufficient input validation on the 'template' attribute used in shortcodes. This makes it possible for attackers with administrative privileges to supply arbitrary paths using traversal (../../) to access and include files outside of the intended directory. If an attacker can successfully upload a php file then remote code execution via inclusion may also be possible. Note: for users with less than administrative capabilities, /wp-admin access needs to be enabled for that user in order for this to be exploitable by those users.
depolanmış siteler arası betik çalıştırma (XSS)
Etkilenen sürümler: 2.3.2 ve öncesi
The Ultimate Member plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Biography field featured on individual user profile pages due to insufficient input sanitization and output escaping that allows users to encode malicious web scripts with HTML encoding that is reflected back on the page. This affects versions up to, and including, 2.3.2. Please note this issue was only partially fixed in version 2.3.2.
açık yönlendirme
Etkilenen sürümler: 2.3.1 ve öncesi
The Ultimate Member plugin for WordPress is vulnerable to arbitrary redirects due to insufficient validation on supplied URLs in the social fields of the Profile Page, which makes it possible for attackers to redirect unsuspecting victims in versions up to, and including, 2.3.1.
güvenlik
Etkilenen sürümler: 2.1.13 öncesi · Oturum açmadan istismar edilebilir
The Ultimate Member plugin before 2.1.13 for WordPress mishandles hidden name="timestamp" fields in forms.
yetki yükseltme
Etkilenen sürümler: 2.1.12 öncesi · Oturum açmadan istismar edilebilir
An issue was discovered in the Ultimate Member plugin before 2.1.12 for WordPress, aka Unauthenticated Privilege Escalation via User Roles. Due to the lack of filtering on the role parameter that could be supplied during the registration process, an attacker could supply the role parameter with a WordPress capability (or any custom Ultimate Member role) and effectively be granted those privileges.
yetki yükseltme
Etkilenen sürümler: 2.1.12 öncesi
An issue was discovered in the Ultimate Member plugin before 2.1.12 for WordPress, aka Authenticated Privilege Escalation via Profile Update. Any user with wp-admin access to the profile.php page could supply the parameter um-role with a value set to any role (e.g., Administrator) during a profile update, and effectively escalate their privileges.
yetki yükseltme
Etkilenen sürümler: 2.1.12 öncesi · Oturum açmadan istismar edilebilir
An issue was discovered in the Ultimate Member plugin before 2.1.12 for WordPress, aka Unauthenticated Privilege Escalation via User Meta. An attacker could supply an array parameter for sensitive metadata, such as the wp_capabilities user meta that defines a user's role. During the registration process, submitted registration details were passed to the update_profile function, and any metadata was accepted, e.g., wp_capabilities[administrator] for Administrator access.
yetkisiz nesne erişimi (IDOR)
Etkilenen sürümler: 2.1.2 ve öncesi · Oturum açmadan istismar edilebilir
Multiple Insecure Direct Object Reference vulnerabilities in includes/core/class-files.php in the Ultimate Member plugin through 2.1.2 for WordPress allow remote attackers to change other users' profiles and cover photos via a modified user_id parameter. This is related to ajax_image_upload and ajax_resize_image.
güvenlik
Etkilenen sürümler: Kayıtta belirtilmemiş
Ultimate Member plugin prior to version 2.0.4 for WordPress allows remote authenticated attackers to bypass access restriction to modify the other users profiles via unspecified vectors.
güvenlik
Etkilenen sürümler: Kayıtta belirtilmemiş
Ultimate Member plugin prior to version 2.0.4 for WordPress allows remote authenticated attackers to bypass access restriction to add a new form in the 'Forms' page via unspecified vectors.
dizin geçişi (path traversal)
Etkilenen sürümler: Kayıtta belirtilmemiş · Oturum açmadan istismar edilebilir
Directory traversal vulnerability in the AJAX function of Ultimate Member plugin prior to version 2.0.4 for WordPress allows remote attackers to read arbitrary files via unspecified vectors.
kısıtlamasız dosya yükleme
Etkilenen sürümler: Kayıtta belirtilmemiş
Unrestricted file upload vulnerability in Ultimate Member plugin prior to version 2.0.4 for WordPress allows remote authenticated users to upload arbitrary image files via unspecified vectors.
dizin geçişi (path traversal)
Etkilenen sürümler: Kayıtta belirtilmemiş
Directory traversal vulnerability in the shortcodes function of Ultimate Member plugin prior to version 2.0.4 for WordPress allows remote authenticated attackers to read arbitrary files via unspecified vectors.
siteler arası betik çalıştırma (XSS)
Etkilenen sürümler: Kayıtta belirtilmemiş
Cross-site scripting vulnerability in Ultimate Member plugin prior to version 2.0.4 for WordPress allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Kaynak: NVD (kamu malı veri) ve WordPress.org eklenti dizini. Kayıtlar eklentinin WordPress.org adresi veya tam adıyla eşleştirilir. Türkçe açıklamalar makine çevirisidir; bağlayıcı metin NVD’deki İngilizce kayıttır. Veri 8 Ekim 2026 itibarıyla.