Extension WordPress
Vulnérabilités ReDi Restaurant Reservation – Instant Restaurant Booking & Table Reservation System
Cette page rassemble les failles publiées pour ReDi Restaurant Reservation – Instant Restaurant Booking & Table Reservation System, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de ReDi Restaurant Reservation – Instant Restaurant Booking & Table Reservation System
8 fiches
ReDi Restaurant Reservation <= 24.1209 – Reflected Cross-Site Scripting
The ReDi Restaurant Reservation plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 24.1209 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary…
*-24.1209
25.0513
22/05/2025
ReDi Restaurant Reservation <= 24.0902 – Reflected Cross-Site Scripting
The ReDi Restaurant Reservation plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 24.0902. This makes it possible for…
*-24.0902
24.1015
16/10/2024
ReDi Restaurant Reservation <= 24.0422 – Missing Authorization
The ReDi Restaurant Reservation plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the redi_restaurant_admin_menu_link_new() function in versions up to, and including, 24.0422. This makes it possible for unauthenticated attackers…
*-24.0422
24.0712
11/07/2024
ReDi Restaurant Reservation <= 24.0128 – Cross-Site Request Forgery via redi_restaurant_admin_options_page()
The ReDi Restaurant Reservation plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 24.0128. This is due to missing or incorrect nonce validation on the redi_restaurant_admin_options_page() function. This makes it possible for…
*-24.0128
24.0303
10/04/2024
ReDi Restaurant Reservation <= 24.0128 – Cross-Site Request Forgery via redi_restaurant_admin_options_page()
The ReDi Restaurant Reservation plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 24.0128. This is due to missing or incorrect nonce validation on the redi_restaurant_admin_options_page() function. This makes it possible for…
*-24.0128
24.0303
05/04/2024
ReDi Restaurant Reservation <= 24.0128 – Reflected Cross-Site Scripting
The ReDi Restaurant Reservation plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 24.0128 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary…
*-24.0128
24.0303
25/03/2024
ReDi Restaurant Reservation <= 23.0211 – Missing Authorization
The ReDi Restaurant Reservation plugin for WordPress is vulnerable to unauthorized access and modification of data due to a missing capability check on the redi_restaurant_ajax() function in versions up to, and including, 23.0211. This makes it possible for…
*-23.0211
23.0212
22/06/2023
ReDi Restaurant Reservation <= 21.0307 – Stored Cross-Site Scripting
The ReDi Restaurant Reservation WordPress plugin before 21.0426 provides the functionality to let users make restaurant reservations. These reservations are stored and can be listed on an 'Upcoming' page provided by the plugin. An unauthenticated user can fill…
*-21.0307
21.0426
09/05/2021
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.