Vulnerability index

Browse CVEs

8 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Restrict Content HIGH 7.5
CVE-2025-14844

The Membership Plugin – Restrict Content plugin for WordPress is vulnerable to Missing Authentication in all versions up to, and including, 3.2.16 vi…

Fix: 3.2.17+
Fix from $1,950 2026-01-16
Event Tickets MEDIUM 5.3
CVE-2024-13457

The Event Tickets and Registration plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 5.18.…

Fix: 5.18.1.1+
Fix from $1,600 2025-01-30
Restrict Content HIGH 7.5
CVE-2024-11090

The Membership Plugin – Restrict Content plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3…

Fix: 3.2.14+
Fix from $1,950 2025-01-26
Event Tickets MEDIUM 6.5
CVE-2024-1316

The Event Tickets and Registration WordPress plugin before 5.8.1, Events Tickets Plus WordPress plugin before 5.9.1 does not prevent users with at le…

Fix: 5.8.1 / 5.9.1+
Fix from $1,600 2024-03-04
Restrict Content HIGH 7.5
CVE-2023-47668

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in StellarWP Membership Plugin – Restrict Content plugin <= 3.2.7 versions.

Fix: after 3.2.7
Fix from $1,950 2023-11-23
Restrict Content MEDIUM 6.1
CVE-2023-3182

The Membership WordPress plugin before 3.2.3 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected C…

Fix: 3.2.3+
Fix from $1,600 2023-07-17
Wpcomplete MEDIUM 6.1
CVE-2022-45825

Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in iThemes WPComplete plugin <= 2.9.2 versions.

Fix: 2.9.5+
Fix from $1,600 2023-03-28
Event Tickets HIGH 8.8
CVE-2019-16120

CSV injection in the event-tickets (Event Tickets) plugin before 4.10.7.2 for WordPress exists via the "All Post> Ticketed > Attendees" Export Attend…

Fix: 4.10.7.2+
Fix from $1,950 2019-09-08