CVE-2026-3309 | properfraction Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content Plugin code injection (EUVD-2026-18997)
A vulnerability labeled as critical has been found in properfraction Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content Plugin up to 4.16.11 on WordPress. Impacted is an unknown function. Such manipulation leads to code injection.
This vulnerability is documented as CVE-2026-3309. The attack can be executed remotely. There is not any exploit available.