User Registration & Membership WordPress plugin <= 5.1.4 contains an open redirect caused by insufficient validation of 'redirect_to_on_logout' parameter, letting attackers redirect users to malicious external URLs after logout, exploit requires crafted URL.
id: CVE-2026-6203
info:
name: User Registration & Membership WordPress plugin - Open Redirect
a
...