CVE-2026-75823
User Frontend – Membership, User Registration, User Profile, User Directory & Content Restriction with Frontend Post Submission に報告された脆弱性
概要
The User Frontend plugin for WordPress is vulnerable to Privilege Escalation in versions 3.5.29 through 4.3.11. This is due to insufficient restriction on the capabilities a user may grant themselves. This makes it possible for unauthenticated attackers to elevate their privileges beyond those intended for their role.
影響を受けるバージョン
- 3.5.29以上 〜 4.3.11以下
対処方法
User Frontend – Membership, User Registration, User Profile, User Directory & Content Restriction with Frontend Post Submission を 4.3.12 以降に更新してください。これで本脆弱性は解消します。
あなたのサイトは大丈夫ですか?
URLを入力するだけで、実際に使われているプラグインを検出し、 このデータベースと突き合わせて既知の脆弱性が残っていないかを確認できます。登録不要・無料です。
30秒で無料診断する