VYPR

Ketchup Restaurant Reservations

by WordPress

CVEs (2)

  • CVE-2022-2753Sep 19, 2022
    risk 0.01cvss epss 0.83

    The Ketchup Restaurant Reservations WordPress plugin through 1.0.0 does not sanitise and escape some of the reservation user inputs, allowing unauthenticated attackers to perform Cross-Site Scripting attacks logged in admin viewing the malicious reservation made

  • CVE-2022-2754Sep 19, 2022
    risk 0.00cvss epss 0.38

    The Ketchup Restaurant Reservations WordPress plugin through 1.0.0 does not validate and escape some reservation parameters before using them in SQL statements, which could allow unauthenticated attackers to perform SQL Injection attacks