CVE-2026-9290Inclusion de fichier local (LFI), non authentifié, dans WP User Manager – User Profile Builder & Membership (<= 2.9.17)
- Plugin
- WP User Manager – User Profile Builder & Membership
- Versions
- <= 2.9.17
- CVSS
- 7.5/10
- Correctif
- 2.9.18
5 juin 2026
Lire