← Back

Ultimatemember

ultimatemember

Vendor: Ultimatemember • 1 CVE

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Ultimatemember
1Ultimatemember
Nov 21, 2024
Feb 16, 2018
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
core/lib/upload/um-image-upload.php in the UltimateMember plugin 2.0 for WordPress has a cross-site scripting vulnerability because it fails to properly sanitize user input passed to the $temp variable.