Simple Membership MailChimp Integration

Simple Membership MailChimp Integration has one disclosed vulnerability in the WordSec catalog, all reported in 2026; it is fixed as of September 2026. Their average CVSS score is 4.3, and the most serious one scores 4.3 out of 10.

The most common weakness is Cross-Site Request Forgery (CSRF), behind 1 of the records (100%).

The one issue recorded for Simple Membership MailChimp Integration has a vendor fix available, so running the current release closes it.

All of these findings were reported by Mustafa Ahmed. Simple Membership MailChimp Integration is installed on roughly 900 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 7.0.4.

Strategic Overview

Avg CVSSMedium
4.3/ 10
Patch Coverage100%
Open

0

Fixed

1

Get automatic notifications for all Simple Membership MailChimp Integration vulnerabilities before they are exploited.

Highest severity on recordCVSS 4.3CVE-2026-8151

Simple Membership MailChimp Integration <= 1.9.7 - Cross-Site Request Forgery

Read the full analysis

Vulnerability Records

1 records
Plugin Profile
Latestv1.9.8

Simple Membership MailChimp Integration

wp.insider

Author

wp.insider

3.0(2)
60/100
Last Updated
2026-05-12 (4mo ago)
Active Installs
900+
Downloads
34,000
Requires WP
5.5+
Requires PHP
0+
Tested up to
WP 7.0.4
Created
2014-07-14 (12y ago)

This addon allows you to specify a MailChimp list name for each of your access levels. When members join your site, they get signed up to the specified MailChimp list. This addon requires the simple membership plugin. After you install this addon, edit your membership level and specify the mailchimp list name. Then go to the MailChimp settings interface and specify your API Key. Read the following page for step by step usage documentation: https://simple-membership-plugin.com/signup-members-mailchimp-list/

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C