Extension WordPress

Vulnérabilités Five Star Restaurant Reservations – WordPress Booking Plugin

Cette page rassemble les failles publiées pour Five Star Restaurant Reservations – WordPress Booking Plugin, leurs plages de versions affectées et les correctifs signalés dans la base locale.

12Vulnérabilités
0Critiques
12Avec correctif
7,2CVSS maximal

Historique de sécurité

CVE et vulnérabilités de Five Star Restaurant Reservations – WordPress Booking Plugin

12 fiches

CVE-2026-54830 Moyenne · 5,3
Five Star Restaurant Reservations – WordPress Booking Plugin

Five Star Restaurant Reservations – WordPress Booking Plugin <= 2.7.19 – Missing Authorization

The Five Star Restaurant Reservations – WordPress Booking Plugin plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to, and including, 2.7.19. This makes it possible for…

Versions affectées

*-2.7.19

Correctif

2.7.20

Publication

17/06/2026

CVE-2026-42670 Moyenne · 5,3
Five Star Restaurant Reservations – WordPress Booking Plugin

Five Star Restaurant Reservations – WordPress Booking Plugin <= 2.7.14 – Missing Authorization

The Five Star Restaurant Reservations – WordPress Booking Plugin plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to, and including, 2.7.14. This makes it possible for…

Versions affectées

*-2.7.14

Correctif

2.7.15

Publication

12/05/2026

CVE-2026-6498 Moyenne · 5,3
Five Star Restaurant Reservations – WordPress Booking Plugin

Five Star Restaurant Reservations <= 2.7.16 – Unauthenticated Payment Bypass via PHP Type Juggling in 'payment_id' Parameter

The Five Star Restaurant Reservations plugin for WordPress is vulnerable to a payment bypass via PHP type juggling in versions up to, and including, 2.7.16 This is due to the valid_payment() function using a PHP loose comparison (==)…

Versions affectées

*-2.7.16

Correctif

2.7.17

Publication

29/04/2026

CVE-2026-25327 Moyenne · 5,3
Five Star Restaurant Reservations – WordPress Booking Plugin

Five Star Restaurant Reservations – WordPress Booking Plugin <= 2.7.9 – Missing Authorization

The Five Star Restaurant Reservations – WordPress Booking Plugin plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to, and including, 2.7.9. This makes it possible…

Versions affectées

*-2.7.9

Correctif

2.7.10

Publication

23/03/2026

CVE-2025-68044 Moyenne · 5,3
Five Star Restaurant Reservations – WordPress Booking Plugin

Five Star Restaurant Reservations <= 2.7.4 – Unauthenticated Insecure Direct Object Reference

The Five Star Restaurant Reservations – WordPress Booking Plugin plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 2.7.4 due to missing validation on a user controlled key. This makes…

Versions affectées

*-2.7.4

Correctif

2.7.5

Publication

02/01/2026

CVE-2025-68601 Moyenne · 4,3
Five Star Restaurant Reservations – WordPress Booking Plugin

Five Star Restaurant Reservations <= 2.7.8 – Cross-Site Request Forgery

The Five Star Restaurant Reservations plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.7.8. This is due to missing or incorrect nonce validation on a function. This makes it possible for…

Versions affectées

*-2.7.8

Correctif

2.7.9

Publication

24/12/2025

CVE-2025-11496 Moyenne · 6,1
Five Star Restaurant Reservations – WordPress Booking Plugin

Five Star Restaurant Reservations – WordPress Booking Plugin <= 2.7.5 – Unauthenticated Stored Cross-Site Scripting

The Five Star Restaurant Reservations – WordPress Booking Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'rtb-name' parameter in all versions up to, and including, 2.7.5 due to insufficient input sanitization and output escaping.…

Versions affectées

*-2.7.5

Correctif

2.7.7

Publication

20/12/2025

CVE-2025-30861 Moyenne · 4,3
Five Star Restaurant Reservations – WordPress Booking Plugin

Five Star Restaurant Reservations <= 2.6.29 – Missing Authorization

The Five Star Restaurant Reservations – WordPress Booking Plugin plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to, and including, 2.6.29. This makes it possible…

Versions affectées

*-2.6.29

Correctif

2.6.30

Publication

27/03/2025

CVE-2024-33596 Moyenne · 4,3
Five Star Restaurant Reservations – WordPress Booking Plugin

Five Star Restaurant Reservations <= 2.6.16 – Missing Authorization

The Five Star Restaurant Reservations plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on several functions in versions up to, and including, 2.6.16. This makes it possible for unauthenticated attackers to perform…

Versions affectées

*-2.6.16

Correctif

2.6.17

Publication

25/04/2024

CVE-2023-34017 Moyenne · 6,1
Five Star Restaurant Reservations – WordPress Booking Plugin

Five Star Restaurant Reservations <= 2.6.7 – Reflected Cross-Site Scripting

The Five Star Restaurant Reservations plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'filter_name' parameter in versions up to, and including, 2.6.7 due to insufficient input sanitization and output escaping. This makes it possible for…

Versions affectées

*-2.6.7

Correctif

2.6.8

Publication

23/06/2023

CVE-2022-0421 Élevée · 7,2
Five Star Restaurant Reservations – WordPress Booking Plugin

Five Star Restaurant Reservations <= 2.4.11 – Missing Authorization to Stored Cross-Site Scripting

The Five Star Restaurant Reservations plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the rtb_stripe_pmt_succeed AJAX action in versions up to, and including, 2.4.11. This makes it possible for unauthenticated attackers…

Versions affectées

*-2.4.11

Correctif

2.4.12

Publication

31/10/2022

CVE-2021-24965 Moyenne · 6,4
Five Star Restaurant Reservations – WordPress Booking Plugin

Five Star Restaurant Reservations <= 2.4.7 – Subscriber+ Stored Cross-Site Scripting

The Five Star Restaurant Reservations WordPress plugin before 2.4.8 does not have capability and CSRF checks in the rtb_welcome_set_schedule AJAX action, allowing any authenticated users to call it. Due to the lack of sanitisation and escaping, users with…

Versions affectées

*-2.4.7

Correctif

2.4.8

Publication

21/12/2021

WP Commander

Rechercher dans toute la base WordPress

Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.

Ouvrir le tableau des vulnérabilités