WordPress Plugin UserPro-Community and User Profile Multiple Vulnerabilities - CVE-2023-6009 - Vulnerability Database

WordPress Plugin UserPro-Community and User Profile Multiple Vulnerabilities - CVE-2023-6009

High
Reference: CVE-2023-6009
Title: WordPress Plugin UserPro-Community and User Profile Multiple Vulnerabilities
Overview:

WordPress Plugin UserPro-Community and User Profile is prone to multiple vulnerabilities including security bypass and privilege escalation vulnerabilities. An attacker may leverage these issues to perform otherwise restricted actions and subsequently perform arbitrary shortcode execution or to bypass the expected capabilities check and perform otherwise restricted actions. WordPress Plugin UserPro-Community and User Profile version 5.1.4 is vulnerable prior versions may also be affected.