CSRF Vulnerabilities in Simple Membership Plugin for WordPress
CVE-2016-10884
8.8HIGH
What is CVE-2016-10884?
The Simple Membership Plugin for WordPress, prior to version 3.3.3, has exposed multiple Cross-Site Request Forgery (CSRF) vulnerabilities. These issues could allow an attacker to trick users into inadvertently executing unwanted actions on their behalf within the application. As a result, attackers could potentially manipulate user accounts, affecting both site functionality and user privacy.