← WordPress Vulnerabilities
WordPress security by component

PeproDev Ultimate Profile Solutions

PeproDev Ultimate Profile Solutions is a WordPress component with 3 published CVE records in this archive. The latest tracked vulnerability was published May 07, 2025; the highest CVE/CNA score is 9.8.

Plugin slug: peprodev-ups

CVE-2025-3924: PeproDev Ultimate Profile Solutions: A security weakness

PeproDev Ultimate Profile Solutions is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation.

PublishedMay 07, 2025
Safe version guidanceSee mitigation notes
Safe version
May 07, 2025 CVE-2025-3924
PeproDev Ultimate Profile Solutions: A security weakness
PeproDev Ultimate Profile Solutions is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE5.3
NVDPending
May 07, 2025 CVE-2025-3921
PeproDev Ultimate Profile Solutions: A security weakness
PeproDev Ultimate Profile Solutions is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE8.2
NVDPending
May 07, 2025 CVE-2025-3844
PeproDev Ultimate Profile Solutions: Privilege escalation or authentication bypass
PeproDev Ultimate Profile Solutions is affected by privilege escalation or authentication bypass. The vulnerable path is reachable without authentication. A successful request can grant permissions or access that the caller should not possess.
See mitigation notes
CVE9.8
NVDPending