Title: High Priority Vulneraibility
Last modified: November 6, 2025

---

# High Priority Vulneraibility

 *  Resolved [Etienne](https://wordpress.org/support/users/epipo/)
 * (@epipo)
 * [5 months, 2 weeks ago](https://wordpress.org/support/topic/high-priority-vulneraibility/)
 * Hi,
 * There has been a high priority vulnerability detected on this plugin in May 2025
   and it seems that there is no fix available yet. Do you plan to fix this vulnerability
   soon?
 * Vulnerability: [https://vdp.patchstack.com/database/wordpress/plugin/wp-user-manager/vulnerability/wordpress-wp-user-manager-plugin-2-9-12-php-object-injection-vulnerability](https://vdp.patchstack.com/database/wordpress/plugin/wp-user-manager/vulnerability/wordpress-wp-user-manager-plugin-2-9-12-php-object-injection-vulnerability)
 * Thanks for your help.

Viewing 4 replies - 1 through 4 (of 4 total)

 *  Plugin Support [Robert Fortaleza](https://wordpress.org/support/users/robfrtlz/)
 * (@robfrtlz)
 * [5 months, 1 week ago](https://wordpress.org/support/topic/high-priority-vulneraibility/#post-18710148)
 * Hi [@epipo](https://wordpress.org/support/users/epipo/),
 * Thanks for reaching out and for bringing this to our attention.
 * We’re aware of the reported vulnerability, and I can confirm that our team is
   already working on a fix for it. While I don’t have an exact ETA yet, the patch
   is currently in our development pipeline and will be included in an upcoming 
   release.
 * In the meantime, we appreciate your patience, and we’ll make sure to update you
   as soon as the fix becomes available. If you have any additional questions or
   concerns, feel free to let us know, we’re here to help.
 *  [Priyanka Behera](https://wordpress.org/support/users/priyankabehera155/)
 * (@priyankabehera155)
 * [5 months ago](https://wordpress.org/support/topic/high-priority-vulneraibility/#post-18725088)
 * Is this vulnerability issue resolved ?
 *  [buckelberg66](https://wordpress.org/support/users/buckelberg66/)
 * (@buckelberg66)
 * [4 months, 2 weeks ago](https://wordpress.org/support/topic/high-priority-vulneraibility/#post-18740937)
 * Hi,
   it would be very nice to get a timeline with a due date for the mitigation
   of the security threat. More than 6 month is really a long time for fixing a 
   high priority security issue.Thank and greetings from Germany
 *  [Studiobovenkamer](https://wordpress.org/support/users/studiobovenkamer/)
 * (@studiobovenkamer)
 * [4 months ago](https://wordpress.org/support/topic/high-priority-vulneraibility/#post-18759462)
 * [@robfrtlz](https://wordpress.org/support/users/robfrtlz/) we have contacted 
   you frequently about this and we don’t understand how this fix is not prioritized.
   It should have been fixed within days. It has been more than 6 months now.

Viewing 4 replies - 1 through 4 (of 4 total)

You must be [logged in](https://login.wordpress.org/?redirect_to=https%3A%2F%2Fwordpress.org%2Fsupport%2Ftopic%2Fhigh-priority-vulneraibility%2F%3Foutput_format%3Dmd&locale=en_US)
to reply to this topic.

 * ![](https://ps.w.org/wp-user-manager/assets/icon-256x256.png?rev=3468506)
 * [WP User Manager - User Profile Builder & Membership](https://wordpress.org/plugins/wp-user-manager/)
 * [Frequently Asked Questions](https://wordpress.org/plugins/wp-user-manager/#faq)
 * [Support Threads](https://wordpress.org/support/plugin/wp-user-manager/)
 * [Active Topics](https://wordpress.org/support/plugin/wp-user-manager/active/)
 * [Unresolved Topics](https://wordpress.org/support/plugin/wp-user-manager/unresolved/)
 * [Reviews](https://wordpress.org/support/plugin/wp-user-manager/reviews/)

 * 6 replies
 * 5 participants
 * Last reply from: [Studiobovenkamer](https://wordpress.org/support/users/studiobovenkamer/)
 * Last activity: [4 months ago](https://wordpress.org/support/topic/high-priority-vulneraibility/#post-18759462)
 * Status: resolved