Simple Membership MailChimp Integration
Simple Membership MailChimp Integration has one disclosed vulnerability in the WordSec catalog, all reported in 2026; it is fixed as of September 2026. Their average CVSS score is 4.3, and the most serious one scores 4.3 out of 10.
The most common weakness is Cross-Site Request Forgery (CSRF), behind 1 of the records (100%).
The one issue recorded for Simple Membership MailChimp Integration has a vendor fix available, so running the current release closes it.
All of these findings were reported by Mustafa Ahmed. Simple Membership MailChimp Integration is installed on roughly 900 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 7.0.4.
CVE-2026-8151Simple Membership MailChimp Integration <= 1.9.7 - Cross-Site Request Forgery
Read the full analysisVulnerability Records
Simple Membership MailChimp Integration
Author
wp.insider
This addon allows you to specify a MailChimp list name for each of your access levels. When members join your site, they get signed up to the specified MailChimp list. This addon requires the simple membership plugin. After you install this addon, edit your membership level and specify the mailchimp list name. Then go to the MailChimp settings interface and specify your API Key. Read the following page for step by step usage documentation: https://simple-membership-plugin.com/signup-members-mailchimp-list/
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C