WordPress membership plugin bug exploited to create admin accounts

Bleeping Computer
by Bill Toulas
March 5, 2026
Hackers are exploiting a critical vulnerability in the User Registration & Membership plugin, which is installed on more than 60,000 WordPress sites.
Verticals
securitytech
Originally published on Bleeping Computer on 3/5/2026