Skip to content
WordPress Membership Plugin Flaw Lets Attackers Create Admin Accounts

WordPress Membership Plugin Flaw Lets Attackers Create Admin Accounts

Gbhackers Divya March 6, 2026

A critical security vulnerability in the popular WordPress User Registration & Membership plugin allows unauthenticated attackers to easily create administrator accounts. The severe flaw, officially tracked as CVE-2026-1492, currently affects all plugin versions up to and including 5.1.2. Because it requires no prior authentication or user interaction to exploit, the vulnerability carries a maximum critical […]

Extracted Entities

Attack Types (1)

CVEs (1)

MITRE ATT&CK (1)

Platforms (1)