<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:webfeeds="http://webfeeds.org/rss/1.0"><channel><title>Cpe:2.3:a:memberdash:memberdash:*:*:*:*:*:wordpress:*:* - CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/cpes/cpe2.3amemberdashmemberdashwordpress/</link><description>Trending threats, MITRE ATT&amp;CK coverage, and detection metadata. Fed continuously.</description><generator>Hugo</generator><language>en</language><managingEditor>hello@craftedsignal.io</managingEditor><webMaster>hello@craftedsignal.io</webMaster><lastBuildDate>Sun, 06 Sep 2026 03:35:40 +0000</lastBuildDate><atom:link href="https://feed.craftedsignal.io/cpes/cpe2.3amemberdashmemberdashwordpress/feed.xml" rel="self" type="application/rss+xml"/><image><url>https://feed.craftedsignal.io/favicon-32x32.png</url><title>CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/</link><width>32</width><height>32</height></image><webfeeds:icon>https://feed.craftedsignal.io/favicon.svg</webfeeds:icon><item><title>CVE-2026-16310 Unauthenticated Password Reset in MemberDash</title><link>https://feed.craftedsignal.io/briefs/2026-09-memberdash-idor/</link><pubDate>Sun, 06 Sep 2026 03:35:40 +0000</pubDate><author>hello@craftedsignal.io</author><guid isPermaLink="true">https://feed.craftedsignal.io/briefs/2026-09-memberdash-idor/</guid><description>The MemberDash WordPress plugin contains an IDOR vulnerability allowing unauthenticated attackers to perform unauthorized password resets for arbitrary users via the registration registration process.</description><content:encoded><![CDATA[<p>The MemberDash plugin for WordPress, in all versions up to and including 1.8.5, is susceptible to an Insecure Direct Object Reference (IDOR) vulnerability. The flaw exists due to inadequate validation of a user-controlled 'id' parameter during the registration process. This oversight allows unauthenticated attackers to supply an arbitrary user ID, enabling them to reset the password of any existing WordPress user, including those with administrative privileges. This exploit facilitates silent account takeover, as the system does not notify the victim of the credential change. Given the critical severity (CVSS 9.8) and the high impact of total administrative compromise on WordPress environments, immediate patching is required.</p>
<h2 id="impact">Impact</h2>
<p>Successful exploitation of this vulnerability leads to total account takeover of any WordPress user account. Attackers targeting administrative accounts gain full control over the WordPress installation, allowing for malicious plugin installation, sensitive data exfiltration, and secondary persistent access within the targeted environment.</p>
<h2 id="recommendation">Recommendation</h2>
<ul>
<li>Upgrade the MemberDash plugin to a version beyond 1.8.5 immediately.</li>
<li>Audit WordPress user accounts and administrative logs for unauthorized password reset events or suspicious account registration patterns.</li>
<li>Implement strict rate limiting on registration endpoints to mitigate automated exploitation attempts.</li>
</ul>
]]></content:encoded><category domain="severity">critical</category><category domain="type">advisory</category><category>web-application</category><category>wordpress</category><category>idor</category><category>account-takeover</category></item></channel></rss>