AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2022-2273

HIGH · CVSS 8.8 EPSS 1.14%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-08-01 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2022-2273
Severity
HIGH
CVSS
8.8
EPSS
1.14%
WordPress

Original NVD Description

The Simple Membership WordPress plugin before 4.1.3 does not properly validate the membership_level parameter when editing a profile, allowing members to escalate to a higher membership level by using a crafted POST request.