Product
roundupwp registrations for the events calendar
6 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2024-10703
CVE-2024-7982
CVE-2024-39638
CVE-2021-25083
CVE-2021-24943
CVE-2021-24876
< 2.13.4
The Registrations for the Events Calendar WordPress plugin before 2.13.4 does not sanitise and escape some of its settings, which
< 2.12.4
The Registrations for the Events Calendar WordPress plugin before 2.12.4 does not sanitise and escape some parameters when accept
< 2.12.3
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Roundup WP Registrations for
<= 2.7.10
The Registrations for the Events Calendar WordPress plugin before 2.7.10 does not escape the qtype parameter before outputting it
< 2.7.6
The Registrations for the Events Calendar WordPress plugin before 2.7.6 does not sanitise and escape the event_id in the rtec_send
< 2.7.5
The Registrations for the Events Calendar WordPress plugin before 2.7.5 does not escape the v parameter before outputting it back