CVE-2026-6203Disclosure

LOWCVSS 6.1 · MEDIUM

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

The User Registration & Membership plugin for WordPress is vulnerable to Open Redirect in versions up to and including 5.1.4. This is due to insufficient validation of user-supplied URLs passed via the 'redirect_to_on_logout' GET parameter before redirecting users. The `redirect_to_on_logout` GET parameter is passed directly to WordPress's `wp_redirect()` function instead of the domain-restricted `wp_safe_redirect()`. While `esc_url_raw()` is applied to sanitize malformed URLs, it does not restrict the redirect destination to the local domain, allowing an attacker to craft a specially formed link that redirects users to potentially malicious external URLs after logout, which could be used to facilitate phishing attacks.

1.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-601

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Threat summary

  • Public PoC is present in monitored signal
  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 2 signals
  • Technical details provided in 3 signals
  • Disclosure: 2 classified signals
  • Peaked 1d ago at 2 mentions (2026-04-14); latest day: 1
  • 3 total mentions across 2 days

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-04-14: 2Mentions · 2026-04-18: 1PoC Mentioned / Linked · 2026-04-14: 1PoC Mentioned / Linked · 2026-04-18: 1Technical Details · 2026-04-14: 2Technical Details · 2026-04-18: 104-1404-18
Signal classification2 categories
Disclosure
266.7%
PoC
133.3%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-04-142
Disclosure2
2026-04-181
PoC1
Full discourse3 posts
  • pdnuclei-bot@pdnuclei_bot
    Disclosure

    🚨 CVE-2026-6203 - medium 🚨 User Registration & Membership WordPress plugin - Open Redirect > User Registration & Membership WordPress plugin <= 5.1.4 contains an open redirect ca... 👾 https://cloud.projectdiscovery.io/library/CVE-2026-6203 @pdnuclei #NucleiTemplates #cve

    Post summary

    The tweet publicly announces CVE‑2026‑6203 as an open‑redirect issue in the User Registration & Membership WordPress plugin (<=5.1.4) and provides a link to a detection template, but it does not mention active exploitation, a patch, or a false positive.

    00011187
    959 followersView on X
  • Atomic Edge@atomicedgeWAF
    PoC

    https://atomicedge.io/cve-proof/cve-2026-6203-user-registration-version-5-1-4-medium-vulnerability-proof-of-concept CVE-2026-6203 #WordPress plugin #vulnerability user-registration #cybersecurity #wordpressfirewall #wordpresssecurity #hacking #wpsecurity #atomicedge

    Post summary

    The post links to a proof‑of‑concept for CVE‑2026‑6203 affecting the WordPress user‑registration plugin (v5.1.4), providing basic technical details but no evidence of active exploitation or remediation.

    0000048
    6 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-6203 The User Registration &amp; Membership plugin for WordPress is vulnerable to Open Redirect in versions up to and including 5.1.4. This is due to insufficient validation of … https://www.cve.org/CVERecord?id=CVE-2026-6203

    Post summary

    The User Registration & Membership plugin for WordPress up to version 5.1.4 is vulnerable to an open redirect due to insufficient validation. No PoC, exploit tool, active exploitation, or patch information is provided.

    00000227
    57.2K followersView on X

Explore more