VulnSea

najeebmedia has 4 CVEs on record between 2024 and 2025. The median CVSS is 7.1 (high), with 2 rated critical. Most affected products: comments_extra_fields_for_post,_pages_and_cpt (2), memberhero (2).

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
7.1
Publish → KEV
Last 90 days
0 prev 0

Products

  • comments_extra_fields_for_post,_pages_and_cpt 2
  • memberhero 2
4
Total CVEs
2
Critical
0
CISA KEV
0
Exploited

najeebmedia vulnerabilities

CVEs affecting najeebmedia, newest first. Open any entry for full detail, references, and exploit status.

4 CVEsRSS

CVE-2025-4334Critical· 9.8PoC
1y ago

The Simple User Registration plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 6.3

The Simple User Registration plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 6.3. This is due to insufficient restrictions on user meta values that can be supplied during registration. Thi…

Abyssalnajeebmedia · memberheroEPSS 2.3%via NVD
CVE-2024-49604Critical· 9.8
1y ago

Authentication Bypass Using an Alternate Path or Channel vulnerability in N-Media Simple User Registration wp-registration allows Authentication Bypass.This issue affects Simple User Registration: from n/a through <= 6.7.

Authentication Bypass Using an Alternate Path or Channel vulnerability in N-Media Simple User Registration wp-registration allows Authentication Bypass.This issue affects Simple User Registration: from n/a through <= 6.7.

Midnightnajeebmedia · memberheroEPSS 0.53%via NVD
CVE-2024-0830Medium· 4.3
2y ago

The Comments Extra Fields For Post,Pages and CPT plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 5.0

The Comments Extra Fields For Post,Pages and CPT plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 5.0. This is due to missing or incorrect nonce validation on several ajax actions. Th…

Sunlitnajeebmedia · comments_extra_fields_for_post,_pages_and_cptEPSS 0.30%via NVD
CVE-2024-0829Medium· 4.3
2y ago

The Comments Extra Fields For Post,Pages and CPT plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 5.0

The Comments Extra Fields For Post,Pages and CPT plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 5.0. This is due to missing or incorrect capability checks on several ajax actions. This m…

Sunlitnajeebmedia · comments_extra_fields_for_post,_pages_and_cptEPSS 0.53%via NVD
najeebmedia vulnerabilities (CVEs) · VulnSea