UsersWP Front-End Login Form, User Registration, User Profile & Members Directory Plugin SQL Injection Vulnerability

Vulnerability

A time-based SQL injection vulnerability has been identified in the UsersWP plugin for WordPress, specifically in the front-end login form, user registration, user profile, and members directory features. This vulnerability affects all versions through 1.2.44. The issue arises in the 'upload_file_remove' function, where insufficient escaping of user-supplied data in the 'htmlvar' parameter allows unauthenticated attackers to inject additional SQL queries. Exploitation of this vulnerability could lead to the extraction of sensitive information from the database.

Impact

Exploitation of this vulnerability could allow an attacker to manipulate SQL queries, potentially leading to unauthorized access to sensitive database information.

Remediation

Users are advised to update the UsersWP plugin to version 1.2.45 or later.

Added: Sep 6, 2025, 3:26 AM
Updated: Sep 6, 2025, 3:26 AM

Vulnerability Rating

Custom Algorithm
spread
5.2
impact
2.5
exploitability
9.0
remediation
7.7
relevance
0.4
threat
3.2
urgency
2.9
incentive
10.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.