Extension WordPress
Vulnérabilités Five Star Restaurant Reservations – WordPress Booking Plugin
Cette page rassemble les failles publiées pour Five Star Restaurant Reservations – WordPress Booking Plugin, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Five Star Restaurant Reservations – WordPress Booking Plugin
12 fiches
Five Star Restaurant Reservations – WordPress Booking Plugin <= 2.7.19 – Missing Authorization
The Five Star Restaurant Reservations – WordPress Booking Plugin plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to, and including, 2.7.19. This makes it possible for…
*-2.7.19
2.7.20
17/06/2026
Five Star Restaurant Reservations – WordPress Booking Plugin <= 2.7.14 – Missing Authorization
The Five Star Restaurant Reservations – WordPress Booking Plugin plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to, and including, 2.7.14. This makes it possible for…
*-2.7.14
2.7.15
12/05/2026
Five Star Restaurant Reservations <= 2.7.16 – Unauthenticated Payment Bypass via PHP Type Juggling in 'payment_id' Parameter
The Five Star Restaurant Reservations plugin for WordPress is vulnerable to a payment bypass via PHP type juggling in versions up to, and including, 2.7.16 This is due to the valid_payment() function using a PHP loose comparison (==)…
*-2.7.16
2.7.17
29/04/2026
Five Star Restaurant Reservations – WordPress Booking Plugin <= 2.7.9 – Missing Authorization
The Five Star Restaurant Reservations – WordPress Booking Plugin plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to, and including, 2.7.9. This makes it possible…
*-2.7.9
2.7.10
23/03/2026
Five Star Restaurant Reservations <= 2.7.4 – Unauthenticated Insecure Direct Object Reference
The Five Star Restaurant Reservations – WordPress Booking Plugin plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 2.7.4 due to missing validation on a user controlled key. This makes…
*-2.7.4
2.7.5
02/01/2026
Five Star Restaurant Reservations <= 2.7.8 – Cross-Site Request Forgery
The Five Star Restaurant Reservations plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.7.8. This is due to missing or incorrect nonce validation on a function. This makes it possible for…
*-2.7.8
2.7.9
24/12/2025
Five Star Restaurant Reservations – WordPress Booking Plugin <= 2.7.5 – Unauthenticated Stored Cross-Site Scripting
The Five Star Restaurant Reservations – WordPress Booking Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'rtb-name' parameter in all versions up to, and including, 2.7.5 due to insufficient input sanitization and output escaping.…
*-2.7.5
2.7.7
20/12/2025
Five Star Restaurant Reservations <= 2.6.29 – Missing Authorization
The Five Star Restaurant Reservations – WordPress Booking Plugin plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to, and including, 2.6.29. This makes it possible…
*-2.6.29
2.6.30
27/03/2025
Five Star Restaurant Reservations <= 2.6.16 – Missing Authorization
The Five Star Restaurant Reservations plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on several functions in versions up to, and including, 2.6.16. This makes it possible for unauthenticated attackers to perform…
*-2.6.16
2.6.17
25/04/2024
Five Star Restaurant Reservations <= 2.6.7 – Reflected Cross-Site Scripting
The Five Star Restaurant Reservations plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'filter_name' parameter in versions up to, and including, 2.6.7 due to insufficient input sanitization and output escaping. This makes it possible for…
*-2.6.7
2.6.8
23/06/2023
Five Star Restaurant Reservations <= 2.4.11 – Missing Authorization to Stored Cross-Site Scripting
The Five Star Restaurant Reservations plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the rtb_stripe_pmt_succeed AJAX action in versions up to, and including, 2.4.11. This makes it possible for unauthenticated attackers…
*-2.4.11
2.4.12
31/10/2022
Five Star Restaurant Reservations <= 2.4.7 – Subscriber+ Stored Cross-Site Scripting
The Five Star Restaurant Reservations WordPress plugin before 2.4.8 does not have capability and CSRF checks in the rtb_welcome_set_schedule AJAX action, allowing any authenticated users to call it. Due to the lack of sanitisation and escaping, users with…
*-2.4.7
2.4.8
21/12/2021
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.