Back to search
CVE-2023-23488
Published: Jan 20, 2023
Modified: Apr 3, 2025
PUBLISHED
Description
The Paid Memberships Pro WordPress Plugin, version < 2.9.8, is affected by an unauthenticated SQL injection vulnerability in the 'code' parameter of the '/pmpro/v1/order' REST route.
| Vendor | Product | Versions |
|---|---|---|
n/a | Paid Memberships Pro WordPress Plugin | affected < 2.9.8 |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now