High severity8.8NVD Advisory· Published Sep 3, 2019· Updated Jun 17, 2026
CVE-2019-15873
CVE-2019-15873
Description
The profilegrid-user-profiles-groups-and-communities plugin before 2.8.6 for WordPress has remote code execution via an wp-admin/admin-ajax.php request with the action=pm_template_preview&html=<?php substring followed by PHP code.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- WordPress/profilegrid-user-profiles-groups-and-communities plugindescription
Patches
Vulnerability mechanics
References
2- wpvulndb.com/vulnerabilities/9086nvdExploitThird Party Advisory
- wordpress.org/plugins/profilegrid-user-profiles-groups-and-communities/nvdRelease NotesThird Party Advisory
News mentions
0No linked articles in our index yet.