---
id: CVE-2025-13312
title: >-
  The CRM Memberships plugin for WordPress is vulnerable to unauthorized
  membership tag creation due to a missing capability check on the
  'ntzcrm_add_new_tag' function in all versions up to, and including, 2.5
summary: >-
  The CRM Memberships plugin for WordPress is vulnerable to unauthorized
  membership tag creation due to a missing capability check on the
  'ntzcrm_add_new_tag' function in all versions up to, and including, 2.5. This
  makes it possible for u…
severity: medium
cvss: 5.3
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N'
cwe:
  - CWE-862
published: '2025-12-05'
updated: '2026-09-25'
sourceUpdated: '2026-09-25T23:10:00.463'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-13312'
references:
  - url: >-
      https://plugins.trac.wordpress.org/browser/crm-memberships/tags/2.5/includes/class/class-ntzcrm-api.php#L14
    label: security@wordfence.com
  - url: >-
      https://plugins.trac.wordpress.org/browser/crm-memberships/tags/2.5/includes/class/class-ntzcrm-api.php#L828
    label: security@wordfence.com
  - url: >-
      https://www.wordfence.com/threat-intel/vulnerabilities/id/f61b9de5-5c37-4efb-ad1c-006e9fc05bc2?source=cve
    label: security@wordfence.com
tags:
  - nvd
epss: 0.0027
epssPercentile: 0.17084
ingestedAt: '2026-09-25T23:21:16.885Z'
---

## Overview

The CRM Memberships plugin for WordPress is vulnerable to unauthorized membership tag creation due to a missing capability check on the 'ntzcrm_add_new_tag' function in all versions up to, and including, 2.5. This makes it possible for unauthenticated attackers to create arbitrary membership tags and modify CRM configuration that should be restricted to administrators.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
