CVE-2024-10261 | madalinungureanu Paid Membership Subscriptions Plugin up to 2.13.0 on WordPress Shortcode do_shortcode code injection
A vulnerability classified as critical has been found in madalinungureanu Paid Membership Subscriptions Plugin up to 2.13.0 on WordPress. Affected is the function do_shortcode of the component Shortcode Handler. The manipulation leads to code injection.
This vulnerability is traded as CVE-2024-10261. It is possible to launch the attack remotely. There is no exploit available.