CVE-2024-10528 | ultimatemember Ultimate Member Plugin up to 2.8.9 on WordPress Profile Picture wp_ajax_um_resize_image authorization
A vulnerability was found in ultimatemember Ultimate Member Plugin up to 2.8.9 on WordPress. It has been rated as problematic. This issue affects the function wp_ajax_um_resize_image of the component Profile Picture Handler. The manipulation leads to missing authorization.
The identification of this vulnerability is CVE-2024-10528. The attack may be initiated remotely. There is no exploit available.