WordPress · Memberful · CVE-2026-103067
**Name of the Vulnerable Software and Affected Versions**
Memberful - Membership Plugin versions prior to 1.81.1
**Description**
A Cross-Site Request Forgery (CSRF) flaw exists in the memberful-wp plugin. This issue allows an attacker to induce a victim into performing unwanted actions on the affected system by tricking them into clicking a malicious link or visiting a compromised page.
**Recommendations**
Update Memberful - Membership Plugin to version 1.81.1 or later.