s2member

Slug: s2member · · 0+

Not updated in last 3 months

Overall Score

Scan this plugin to generate a full score report

--
Not Yet Scanned

What this score means

Scores are calculated on a 100-point scale by analysing six weighted categories: Security, WP.org Readiness, Performance, Code Quality, Accessibility, and Vulnerabilities. Open vulnerabilities are weighted by severity, CVSS, and patch availability, and incomplete source data can reduce confidence slightly.

  • Excellent The plugin follows best practices across every measured category. It is well-maintained, low-risk, and recommended for production use.
  • Good Strong overall quality with minor areas for improvement. Generally safe to use on most sites.
  • Needs Review Some areas of concern detected. Review the full issues report and weigh the risks before installing on production.
  • High Risk Significant quality or security problems found. Exercise caution — check the details carefully before using this plugin.
No scan has been completed yet. Vulnerability and issue data will appear after the first scan.
  • Wordfence: June 10, 2026 4:46 am (14 minutes ago)

Score Breakdown

Shield
Security
--
Pending Scan
W
WP.org Readiness
--
Pending Scan
Speed
Performance
--
Pending Scan
Code
Code Quality
--
Pending Scan
A11y
Accessibility
--
Pending Scan
Bug
Vulnerability Status
--
Pending Scan

Plugin Details

Scan Summary

  • Errors: 0
  • Warnings: 0
  • Notices: 0
  • Last Scanned: N/A
No scan results yet. Start the first scan to populate this summary.

Detected Issues

No issues to display yet. Run the first scan to generate findings.

Score History

No history available yet. · All-Time High: N/A

All Past Vulnerabilities

Showing all known historical vulnerabilities for this plugin, including open and closed records.

Vulnerability CVE Severity Status Affected Versions Patched Version Updated Source
s2Member (Pro) <= 241114 - Unauthenticated Remote Code Execution N/A LOW Closed *-241114 241216 2024-12-02 00:00:00 Wordfence
s2Member® Framework (Membership, Member Level Roles, Access Capabilities, PayPal Members) < 111220 - Cross-Site Scripting N/A LOW Closed [*, 111220) 111220 2012-02-12 00:00:00 Wordfence
s2Member <= 250905 - Unauthenticated Remote Code Execution N/A LOW Closed *-250905 251005 2025-10-01 00:00:00 Wordfence
s2Member – Best Membership Plugin for All Kinds of Memberships, Content Restriction Paywalls & Member Access Subscriptions <= 230815 - Information Exposure N/A LOW Closed *-230815 240315 2024-03-18 00:00:00 Wordfence
s2Member <= 250419 - Authenticated (Administrator+) Local File Inclusion N/A LOW Closed *-250419 250424 2025-04-04 00:00:00 Wordfence
s2Member <= 260127 - Unauthenticated Privilege Escalation via Account Takeover N/A LOW Closed *-260127 260215 2026-02-18 18:11:15 Wordfence
s2Member <= 250701 - Unauthenticated PHP Object Injection N/A LOW Closed *-250701 250905 2025-08-21 00:00:00 Wordfence
s2Member – Excellent for All Kinds of Memberships, Content Restriction Paywalls & Member Access Subscriptions <= 241114 - Authenticated (Contributor+) Sensitive Information Exposure N/A LOW Closed *-241114 241216 2024-12-16 00:00:00 Wordfence
s2Member <= 240315 - Limited Privilege Escalation N/A LOW Closed *-240315 240325 2024-04-05 00:00:00 Wordfence
s2Member <= 251005 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode N/A LOW Closed *-251005 260101 2026-02-18 00:00:00 Wordfence
s2Member – Excellent for All Kinds of Memberships, Content Restriction Paywalls & Member Access Subscriptions <= 241216 - Reflected Cross-Site Scripting N/A LOW Closed *-241216 250214 2025-02-17 00:00:00 Wordfence
s2Member Pro <= 241216 - Reflected Cross-Site Scripting N/A LOW Closed *-241216 250214 2025-02-22 00:00:00 Wordfence