Close Menu
    Facebook X (Twitter) Instagram
    Wifi PortalWifi Portal
    • Blogging
    • SEO & Digital Marketing
    • WiFi / Internet & Networking
    • Cybersecurity
    • Tech Tools & Mobile / Apps
    • Privacy & Online Earning
    Facebook X (Twitter) Instagram
    Wifi PortalWifi Portal
    Home»SEO & Digital Marketing»Ultimate Member WordPress Plugin Vulnerability Affects Up To 200k Sites
    SEO & Digital Marketing

    Ultimate Member WordPress Plugin Vulnerability Affects Up To 200k Sites

    adminBy adminJune 24, 2026No Comments3 Mins Read
    Facebook Twitter LinkedIn Telegram Pinterest Tumblr Reddit WhatsApp Email
    Ultimate Member WordPress Plugin Vulnerability Affects Up To 200k Sites
    Share
    Facebook Twitter LinkedIn Pinterest Email

    A vulnerability in the popular Ultimate Member WordPress plugin enables account takeover by exposing password reset links. The flaw makes it possible for attackers with authenticated contributor-level access or higher to obtain password reset URLs for user accounts, including administrators.

    The vulnerability affects up to 200,000 WordPress installations and is rated 8.8/10.

    Ultimate Member WordPress Plugin

    Ultimate Member is a membership and user profile plugin for WordPress that helps websites create online communities, membership portals, and user directories. It provides front-end registration, login, profiles, and searchable member directories. The plugin enables users to become authors and create posts and comments.

    Vulnerable To Authenticated Attackers

    This is an authenticated vulnerability, which means attackers need to first acquire contributor-level permission levels in order to exploit it. Successful exploitation of the vulnerability enables full website account takeover.

    Password Reset Link Disclosure

    The vulnerability is caused by three separate logic flaws that become dangerous when chained together.

    The first flaw allows attackers to trick the plugin into treating arbitrary posts as legitimate member directories. A member directory is normally a controlled list of users displayed on the site, but the flawed validation makes it possible to redirect directory-related functionality toward attacker-controlled content.

    The second flaw allows attackers to bypass restrictions on protected metadata fields. Metadata in WordPress often contains internal information that plugins expect normal users cannot manipulate directly.

    The third flaw is due to a failure to properly validate field names used when generating user card data. Because of this missing validation, attackers can request internal fields that should never be exposed publicly, including the password reset link.

    Impact Of The Vulnerability

    Password reset links are effectively temporary login credentials. They are supposed to be private and sent only to the account owner during password recovery.

    Because the plugin fails to properly validate which fields can be requested, attackers can force the plugin to disclose those reset links which an attacker can use to reset any account’s password, including for an administrator account which controls website access.

    According to Wordfence:

    “This makes it possible for authenticated attackers with Contributor-level access and above to leak live password reset URLs for all users in the member directory response, including administrators.”

    Patch Available

    The vulnerability affects all versions of Ultimate Member up to and including version 2.11.4. A patch is available in version 2.12.0, which adds stricter validation around member directory handling and allowed user data fields. Users of the Ultimate Member plugin are recommended to update to version 2.12.0 or newer immediately.

    Featured Image by Shutterstock/Luis Molinero

    200K Affects Member Plugin Sites Ultimate vulnerability WordPress
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Telegram Email
    Previous ArticleShopify launches AI-powered marketing automation tool
    admin
    • Website

    Related Posts

    Shopify launches AI-powered marketing automation tool

    June 24, 2026

    Google’s Limited Ad Serving Update Raises Questions About Advertiser Qualification

    June 24, 2026

    Cloudflare and beehiiv give publishers new AI crawler controls

    June 24, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    Search Blog
    About
    About

    At WifiPortal.tech, we share simple, easy-to-follow guides on cybersecurity, online privacy, and digital opportunities. Our goal is to help everyday users browse safely, protect personal data, and explore smart ways to earn online. Whether you’re new to the digital world or looking to strengthen your online knowledge, our content is here to keep you informed and secure.

    Trending Blogs

    Ultimate Member WordPress Plugin Vulnerability Affects Up To 200k Sites

    June 24, 2026

    Shopify launches AI-powered marketing automation tool

    June 24, 2026

    Google’s Limited Ad Serving Update Raises Questions About Advertiser Qualification

    June 24, 2026

    Cloudflare and beehiiv give publishers new AI crawler controls

    June 24, 2026
    Categories
    • Blogging (99)
    • Cybersecurity (1,955)
    • Privacy & Online Earning (290)
    • SEO & Digital Marketing (1,579)
    • Tech Tools & Mobile / Apps (1,796)
    • WiFi / Internet & Networking (372)

    Subscribe to Updates

    Stay updated with the latest tips on cybersecurity, online privacy, and digital opportunities straight to your inbox.

    WifiPortal.tech is a blogging platform focused on cybersecurity, online privacy, and digital opportunities. We share easy-to-follow guides, tips, and resources to help you stay safe online and explore new ways of working in the digital world.

    Our Picks

    Ultimate Member WordPress Plugin Vulnerability Affects Up To 200k Sites

    June 24, 2026

    Shopify launches AI-powered marketing automation tool

    June 24, 2026

    Google’s Limited Ad Serving Update Raises Questions About Advertiser Qualification

    June 24, 2026
    Most Popular
    • Ultimate Member WordPress Plugin Vulnerability Affects Up To 200k Sites
    • Shopify launches AI-powered marketing automation tool
    • Google’s Limited Ad Serving Update Raises Questions About Advertiser Qualification
    • Cloudflare and beehiiv give publishers new AI crawler controls
    • Content gap analysis: A step-by-step guide
    • Anthropic’s @Claude Enters Workplace As A Slack Channel Coworker
    • Google updates AI Max reporting guidance and DSA transition plans
    • Upscale AI readies Skyhammer scale-up networking tech, raises new funding
    © 2026 WifiPortal.tech. Designed by WifiPortal.tech.
    • Home
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms and Conditions
    • Disclaimer

    Type above and press Enter to search. Press Esc to cancel.