CVE-2026-103067

Cross-Site Request Forgery (CSRF) vulnerability in Memberful Memberful - Membership Plugin memberful-wp allows Cross Site Request Forgery.This issue affects Memberful - Membership Plugin: from n/a through 1.81.0.

  • Published Oct 1, 2026
  • CVSS 8.0 high
  • 0.1% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-103067 at the National Vulnerability Database