plugin

Member Access Vulnerabilities

1 known security issue reported for the Member Access WordPress plugin. Most recent disclosed Jan 6, 2025.

1 medium

Running Member Access on your site? Check whether your installed version is affected.

Scan your site free

Member Access <= 1.1.6 - Unauthenticated Content Restriction Bypass to Sensitive Information Exposure

medium

The Member Access plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.1.6 via the WordPress core search feature. This makes it possible for unauthenticated attackers to extract sensitive data from posts that have been restricted to higher-level roles such as admi...

CVSS:
5.3
Affected:
up to 1.1.6
Fix:
No patched version reported
Disclosed:
Jan 6, 2025

CVE-2024-11290 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database