{
"$type": "site.standard.document",
"bskyPostRef": {
"cid": "bafyreieswheqviblytx5rciyxkyxw5pawflhp3yhedanoekqgkr5ki7qya",
"uri": "at://did:plc:6wtxqaikjf62unmnajbfbq5v/app.bsky.feed.post/3mjg5tuz7k4x2"
},
"coverImage": {
"$type": "blob",
"ref": {
"$link": "bafkreidov2vo4gke4mzhaog64gqp6zdtbcpmjw2keczmh6vo67wxafjq7a"
},
"mimeType": "image/webp",
"size": 18558
},
"path": "/critical-wordpress-plugin-flaw-lets-attackers-create-admin-accounts-on-vulnerable-sites/",
"publishedAt": "2026-04-13T17:29:47.000Z",
"site": "https://vpncentral.com",
"tags": [
"News",
"Critical WordPress plugin flaw lets attackers create admin accounts on vulnerable sites",
"VPN Central"
],
"textContent": "A critical flaw in the User Registration & Membership plugin for WordPress can let unauthenticated attackers gain administrator-level access on affected sites. The bug, tracked as CVE-2026-1492, affects plugin versions through 5.1.2 and was fixed in version 5.1.3. This matters because the plugin handles user registration and membership workflows, which often sit directly on public-facing […]\n\nThe post Critical WordPress plugin flaw lets attackers create admin accounts on vulnerable sites appeared first on VPN Central.",
"title": "Critical WordPress plugin flaw lets attackers create admin accounts on vulnerable sites"
}