Product
wp user project wp user
3 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2022-4049
CVE-2022-4519
CVE-2021-25034
<= 7.0
The WP User WordPress plugin through 7.0 does not properly sanitize and escape a parameter before using it in a SQL statement, lea
<= 7.0
The WP User plugin for WordPress is vulnerable to Stored Cross-Site Scripting via its settings parameters in versions up to, and i
< 7.0
The WP User WordPress plugin before 7.0 does not sanitise and escape some parameters in pages where the [wp_user] shortcode is use