← WordPress Vulnerabilities
WordPress security by component

Binary MLM Plan

Binary MLM Plan is a WordPress component with 3 published CVE records in this archive. The latest tracked vulnerability was published Oct 17, 2025; the highest CVE/CNA score is 7.6.

Plugin slug: binary-mlm-plan

CVE-2025-11895: Binary MLM Plan: A security weakness

Binary MLM Plan is affected by a security weakness. Exploitation requires an authenticated WordPress account. The resulting impact depends on how the affected component exposes the vulnerable operation.

PublishedOct 17, 2025
Safe version guidanceSee mitigation notes
Safe version
Oct 17, 2025 CVE-2025-11895
Binary MLM Plan: A security weakness
Binary MLM Plan is affected by a security weakness. Exploitation requires an authenticated WordPress account. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE4.3
NVDPending
Oct 15, 2025 CVE-2025-10038
Binary MLM Plan: Privilege escalation or authentication bypass
Binary MLM Plan is affected by privilege escalation or authentication bypass. The vulnerable path is reachable without authentication. A successful request can grant permissions or access that the caller should not possess.
See mitigation notes
CVE6.5
NVDPending
May 23, 2025 CVE-2025-47671
Binary MLM Plan: SQL injection
Binary MLM Plan is affected by SQL injection. Exposure depends on how the affected operation is made reachable by the site. A successful request can alter database queries and expose or modify WordPress data.
See mitigation notes
CVE7.6
NVDPending