Vulnerability index

Browse CVEs

13 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Rsvpmaker CRITICAL 9.8
CVE-2024-50531

Unrestricted Upload of File with Dangerous Type vulnerability in davidfcarr RSVPMaker for Toastmasters rsvpmaker-for-toastmasters allows Upload a Web…

Fix: 6.2.5+
Fix from $2,300 2024-11-04
Rsvpmaker CRITICAL 9.8
CVE-2023-25054

Improper Control of Generation of Code ('Code Injection') vulnerability in David F. Carr RSVPMaker.This issue affects RSVPMaker: from n/a through 10.…

Fix: after 10.6.6
Fix from $2,300 2023-12-29
Rsvpmaker CRITICAL 9.8
CVE-2023-41652

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in David F. Carr RSVPMaker rsvpmaker allows SQL In…

Fix: after 10.6.6
Fix from $2,300 2023-11-03
Rsvpmaker HIGH 7.2
CVE-2023-25045

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in David F. Carr RSVPMaker allows SQL Injection.Th…

Fix: after 9.9.3
Fix from $1,950 2023-10-31
Rsvpmaker HIGH 7.2
CVE-2023-25047

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in David F. Carr RSVPMaker rsvpmaker allows SQL In…

Fix: after 9.9.3
Fix from $1,950 2023-10-31
Rsvpmaker MEDIUM 6.1
CVE-2023-27616

Unauth. Stored Cross-Site Scripting (XSS) vulnerability in David F. Carr RSVPMaker plugin <= 10.6.6 versions.

Fix: 10.6.7+
Fix from $1,600 2023-09-27
Rsvpmaker HIGH 7.2
CVE-2023-29095

Auth. (admin+) SQL Injection (SQLi) vulnerability in David F. Carr RSVPMaker plugin < 10.5.5 versions.

Fix: 10.5.5+
Fix from $1,950 2023-07-10
Rsvpmaker HIGH 7.5
CVE-2022-1768EPSS 13%

The RSVPMaker plugin for WordPress is vulnerable to unauthenticated SQL Injection due to insufficient escaping and parameterization on user supplied …

Fix: after 9.3.2
Fix from $1,950 2022-06-13
Rsvpmaker HIGH 7.5
CVE-2022-1453EPSS 7%

The RSVPMaker plugin for WordPress is vulnerable to unauthenticated SQL Injection due to missing SQL escaping and parameterization on user supplied d…

Fix: 9.2.6+
Fix from $1,950 2022-05-10
Rsvpmaker HIGH 7.5
CVE-2022-1505

The RSVPMaker plugin for WordPress is vulnerable to unauthenticated SQL Injection due to missing SQL escaping and parameterization on user supplied d…

Fix: 9.2.7+
Fix from $1,950 2022-05-10
Rsvpmaker Excel MEDIUM 6.1
CVE-2021-38337

The RSVPMaker Excel WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to a reflected $_SERVER["PHP_SELF"] value in the ~/phpexcel/…

Fix: after 1.1
Fix from $1,600 2021-09-10
Rsvpmaker CRITICAL 9.8
CVE-2018-21004

The rsvpmaker plugin before 5.6.4 for WordPress has SQL injection.

Fix: 5.6.4+
Fix from $2,300 2019-08-27
Rsvpmaker CRITICAL 9.8
CVE-2019-15646

The rsvpmaker plugin before 6.2 for WordPress has SQL injection.

Fix: 6.2+
Fix from $2,300 2019-08-27