The ARMember WordPress plugin before 3.4.8 is vulnerable to account takeover (even the administrator) due to missing nonce and…
WPScan·CWE-862·Published 2022-06-27