Klubraum Membership Request

Klubraum Membership Request has one disclosed vulnerability in the WordSec catalog, all reported in 2026; it is fixed as of September 2026. Their average CVSS score is 5.3, and the most serious one scores 5.3 out of 10.

The most common weakness is Missing Authorization, behind 1 of the records (100%).

The one issue recorded for Klubraum Membership Request has a vendor fix available, so running the current release closes it.

All of these findings were reported by Md. Moniruzzaman Prodhan (NomanProdhan). Klubraum Membership Request is installed on roughly 90 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 6.9.7.

Strategic Overview

Avg CVSSMedium
5.3/ 10
Patch Coverage100%
Open

0

Fixed

1

Get automatic notifications for all Klubraum Membership Request vulnerabilities before they are exploited.

Highest severity on recordCVSS 5.3CVE-2026-4604

Klubraum Membership Request <= 1.1.0 - Missing Authorization to Unauthenticated Arbitrary Plugin Settings Update

Read the full analysis

Vulnerability Records

1 records
Plugin Profile
Latestv1.1.2

Klubraum Membership Request

klubraum

Author

klubraum

0.0(0)
0/100
Last Updated
2026-03-26 (6mo ago)
Active Installs
90+
Downloads
4,488
Requires WP
4.6+
Requires PHP
5.6+
Tested up to
WP 6.9.7
Created
2021-04-10 (6y ago)

Klubraum is a modern app for communication and organization of large private groups, like sports clubs, NGOs, etc. Find out more on klubraum.com This plugin provides a widget as shortcode to be integrated somewhere in your wordpress site. The widget displays a form through which new members can ask to join the group within the Klubraum app. The user is asked to fill in their e-mail address. Thereafter, an e-mail validation mail is sent, from which the membership request can be finally submitted.

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C