Vulnerabilidades en rustaurius
31 resultadosCVE-2025-2005CRITICALFront-End-Only-Users <= 3.2.32 - Unauthenticated Arbitrary File UploadEPSS 17.7%CVE-2020-36726CRITICALUltimate Reviews < 2.1.33 - PHP Object InjectionEPSS 1.6%CVE-2024-7607HIGHFront End Users <= 3.2.28 - Authenticated (Contributor+) Time-Based SQL InjectionEPSS 0.5%CVE-2025-30861MEDIUMWordPress Five Star Restaurant Reservations plugin <= 2.6.29 - Broken Access Control vulnerabilityEPSS 0.5%CVE-2023-4471MEDIUMOrder Tracking Pro <= 3.3.6 - Reflected Cross-Site ScriptingEPSS 0.5%CVE-2025-49288HIGHWordPress Ultimate WP Mail plugin <= 1.3.5 - Account Takeover via Email Log Leak VulnerabilityEPSS 0.5%CVE-2025-6993HIGHUltimate WP Mail 1.0.17 - 1.3.6 - Missing Authorization to Authenticated (Contributor+) Privilege Escalation via get_email_log_details FunctionEPSS 0.4%CVE-2024-12410MEDIUMFront End Users <= 3.2.32 - Authenticated (Admin+) SQL injectionEPSS 0.4%CVE-2024-5459MEDIUMRestaurant Menu and Food Ordering <= 2.4.16 - Missing Authorization to Menu CreationEPSS 0.4%CVE-2024-7606MEDIUMFront End Users <= 3.2.28 - Authenticated (Contributor+) Stored Cross-Site Scripting via ShortcodeEPSS 0.3%CVE-2023-4500MEDIUMOrder Tracking Pro <= 3.3.6 - Authenticated (Administrator+) Stored Cross-Site ScriptingEPSS 0.3%CVE-2025-49266HIGHWordPress Ultimate Reviews plugin <= 3.2.14 - Reflected Cross Site Scripting (XSS) vulnerabilityEPSS 0.3%CVE-2024-13563MEDIUMFront End Users <= 3.2.30 - Authenticated (Contributor+) Stored Cross-Site Scripting via forgot-password ShortcodeEPSS 0.3%CVE-2025-32694MEDIUMWordPress Ultimate WP Mail plugin <= 1.3.10 - Open Redirection vulnerabilityEPSS 0.3%CVE-2025-47490HIGHWordPress Ultimate WP Mail plugin <= 1.3.4 - SQL Injection VulnerabilityEPSS 0.3%CVE-2025-53454MEDIUMWordPress Ultimate WP Mail Plugin <= 1.3.8 - Cross Site Scripting (XSS) VulnerabilityEPSS 0.3%CVE-2025-47580MEDIUMWordPress Front End Users plugin <= 3.2.35 - Broken Access Control vulnerabilityEPSS 0.2%CVE-2025-26877MEDIUMWordPress Front End Users Plugin <= 3.2.30 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%CVE-2025-68044HIGHWordPress Five Star Restaurant Reservations plugin <= 2.7.4 - Insecure Direct Object References (IDOR) vulnerabilityEPSS 0.2%CVE-2026-4336MEDIUMUltimate FAQ Accordion Plugin <= 2.4.7 - Authenticated (Author+) Stored Cross-Site Scripting via FAQ ContentEPSS 0.2%