{"id":"CVE-2026-11963","title":"The User Registration & Membership  WordPress plugin before 5.2.2 does not perform an authorization check on a membership-upgrade action and derives the user to modify from a caller-supplied identifier instead of the current user, allowi…","summary":"The User Registration & Membership  WordPress plugin before 5.2.2 does not perform an authorization check on a membership-upgrade action and derives the user to modify from a caller-supplied identifier instead of the current user, allowi…","severity":"none","published":"2026-07-13","updated":"2026-07-13","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-11963","references":[{"url":"https://wpscan.com/vulnerability/a34a916a-983e-48a5-8f10-99214ee3b613/","label":"contact@wpscan.com"}],"tags":["nvd"],"ingestedAt":"2026-07-13T07:25:22.673Z","epss":0.0035,"epssPercentile":0.28558,"slug":"CVE-2026-11963","body":"## Overview\n\nThe User Registration & Membership  WordPress plugin before 5.2.2 does not perform an authorization check on a membership-upgrade action and derives the user to modify from a caller-supplied identifier instead of the current user, allowing any authenticated user such as a subscriber to change another user's WordPress role and membership tier.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":3,"depthScoreParts":{"impact":2.8,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[]}