Manage User Columns

Manage User Columns has one disclosed vulnerability in the WordSec catalog, all reported in 2024; it is fixed as of September 2026. Their average CVSS score is 4.3, and the most serious one scores 4.3 out of 10.

The most common weakness is Cross-Site Request Forgery (CSRF), behind 1 of the records (100%).

The one issue recorded for Manage User Columns has a vendor fix available, so running the current release closes it.

All of these findings were reported by thiennv. Manage User Columns is installed on roughly 1,000 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 7.0.4.

Strategic Overview

Avg CVSSMedium
4.3/ 10
Patch Coverage100%
Open

0

Fixed

1

Get automatic notifications for all Manage User Columns vulnerabilities before they are exploited.

Highest severity on recordCVSS 4.3CVE-2024-51686

Manage User Columns <= 1.0.5 - Cross-Site Request Forgery

Read the full analysis

Vulnerability Records

1 records
Showing 1–1 of 1 reports
Manage User Columns banner
Latestv1.0.7

Manage User Columns

Deepak Khokhar

Author

Deepak Khokhar

4.2(5)
84/100
Last Updated
2026-06-19 (3mo ago)
Active Installs
1,000+
Downloads
22,841
Requires WP
6.0+
Requires PHP
7.4+
Tested up to
WP 7.0.4
Created
2020-10-07 (6y ago)

“Manage User Columns” is a small plugin that allows you to manage the user fields displayed on the users list page in the WordPress dashboard area. The new fields will be added as columns with other user information. All new columns will be sortable. You can add default user fields like registration-date, custom fields added by other plugins or custom code, and remove any default or custom field from the Users list table. Removing columns will not delete any user data. So, you are safe to toggle between these columns. This plugin adds a new column “Registration Date” as a default column which you can enable/disable easily. Want to filter the users too? Check this addon Features Add new columns to the Users list page in WordPress admin area. Shows the user registration date with a sortable column. Remove any default or newly added columns from the users page easily. Add custom columns based on the user meta information stored in database added by custom code or 3rd party plugin. All new columns will be sortable. Unlimited custom columns – You can add as many custom user columns as you want. There is no restrictions. All plugin configuration is on the users page itself with easy interface. Searchable text box when adding a new column so you can select the correct value. Array values will be displayed as simple text separated by a comma. For advanced developers – Filter for modifying the column value. Use add_filter( &#8216;muc_filter_custom_col_val’, &#8216;YOUR_CUSTOM_CALLBACK_FUNCTION’, 10, 3 ); (NEW) PRO version Features Add Filters on the users page itself. Add Custom filters as you want. Works with the free manage user columns plugin. Different Filter types – Textbox, dropdown, and exist/blank. Default filters – username, email, Registration Date, Role. Example – Filter your users based on Roles and registered between a range of dates. Supports Meta keys to create custom filter.

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C