WordPress Plugin Vulnerabilities

Paid Member Subscriptions < 3.0.7 - Subscriber+ Payment Data Disclosure via IDOR

Description

The plugin does not perform capability or nonce checks on one of its payment-related AJAX actions, allowing any authenticated user with Subscriber-level access and above to disclose the payment details of any member by enumerating the payment identifier.

Proof of Concept

Affects Plugins

References

Classification

Type
IDOR
CWE

Miscellaneous

Original Researcher
WEI HSIANG WANG
Submitter
WEI HSIANG WANG
Submitter website
Verified
Yes

Timeline

Publicly Published
2026-07-13 (about 2 months ago)
Added
2026-07-13 (about 2 months ago)
Last Updated
2026-07-13 (about 2 months ago)

Other