CVE · High

CVE-2026-66712 — Simple Membership [simple-membership] < 4.7.9

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2026-66712 Simple Membership [simple-membership] < 4.7.9 Missing Authorization High 7.5 < 4.7.9 4.7.9 2026-08-05

CVE-2026-66712

A vulnerability has been identified in Simple Membership plugin versions prior to 4.7.9, allowing unauthorized access to certain features due to inadequate access control measures. This flaw enables attackers to bypass authentication checks and potentially exploit sensitive areas of the site. Affected plugins include those installed with version numbers up to 4.7.8.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.