WP Recipe Maker

Bootstrapped · 13 CVEs

CVE-2024-9650
MEDIUM

WP Recipe Maker <= 9.6.1 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via 'tooltip'

Oct 24, 2024

CVE-2024-0383
MEDIUM

WP Recipe Maker <= 9.1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'group_tag'

Jun 19, 2024

CVE-2024-3490
MEDIUM

WP Recipe Maker <= 9.3.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via wprm-recipe-roundup-item Shortc…

May 2, 2024

CVE-2024-1571
MEDIUM

WP Recipe Maker <= 9.2.1 - Authenticated Stored Cross-Site Scripting via Video Embed

Apr 9, 2024

CVE-2024-1206
HIGH

WP Recipe Maker <= 9.1.2 - Missing Authorization to Authenticated (Subscriber+) SQL Injecton

Feb 20, 2024

CVE-2024-0384
MEDIUM

WP Recipe Maker <= 9.1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via Recipe Notes

Feb 5, 2024

CVE-2024-0255
MEDIUM

WP Recipe Maker <= 9.1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via icon_color

Feb 5, 2024

CVE-2024-0380
MEDIUM

WP Recipe Maker <= 9.1.0 - Directory Traversal

Feb 5, 2024

CVE-2024-0382
MEDIUM

WP Recipe Maker <= 9.1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via header_tag

Feb 5, 2024

CVE-2023-6958
MEDIUM

WP Recipe Maker <= 9.1.0 - Authenticated(Contributor+) Stored Cross-Site Scripting via Shortcode

Jan 18, 2024

CVE-2024-0381
MEDIUM

WP Recipe Maker <= 9.1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'tag'

Jan 18, 2024

CVE-2023-6970
MEDIUM

WP Recipe Maker <= 9.1.0 - Reflected Cross-Site Scripting via Referer

Jan 18, 2024

CVE-2022-4468
MEDIUM

WP Recipe Maker < 8.6.1 - Contributor+ Stored XSS

Jan 9, 2023

Showing 1 to 13 of 13 CVEs