CVE-2024-51815: Cristián Lávaque s2member
Critical severity, CVSS 9.0. EPSS: 0.5% chance of exploitation in the next 30 days.
Improper Control of Generation of Code ('Code Injection') vulnerability in Cristián Lávaque s2Member s2member allows Code Injection.This issue affects s2Member: from n/a through <= 241114.
Affected products
- Cristián Lávaque s2member: up to and including 241114
- Wp Sharks s2member Pro: up to and including 241114
Published 2024-12-06. Last modified 2026-06-17.