Unrated severityNVD Advisory· Published Mar 11, 2024· Updated Mar 28, 2025
Paid Memberships Pro < 2.12.9 - Contributor+ Arbitrary User Custom Field Disclosure
CVE-2024-1279
Description
The Paid Memberships Pro WordPress plugin before 2.12.9 does not prevent user with at least the contributor role from leaking other users' sensitive metadata.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: <2.12.9
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/4c537264-0c23-428e-9a11-7a9e74fb6b69/mitreexploitvdb-entrytechnical-description
News mentions
0No linked articles in our index yet.