Ketchup Restaurant Reservations Project Ketchup Restaurant Reservations vulnerabilities
2 known vulnerabilities affecting ketchup_restaurant_reservations_project/ketchup_restaurant_reservations.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2022-2754P2CRITICALCVSS 9.8≤ 1.0.02022-09-19
CVE-2022-2754 [CRITICAL] CWE-89 CVE-2022-2754: The Ketchup Restaurant Reservations WordPress plugin through 1.0.0 does not validate and escape some
The Ketchup Restaurant Reservations WordPress plugin through 1.0.0 does not validate and escape some reservation parameters before using them in SQL statements, which could allow unauthenticated attackers to perform SQL Injection attacks
nvd
CVE-2022-2753P3MEDIUMCVSS 6.1≤ 1.0.02022-09-19
CVE-2022-2753 [MEDIUM] CWE-79 CVE-2022-2753: The Ketchup Restaurant Reservations WordPress plugin through 1.0.0 does not sanitise and escape some
The Ketchup Restaurant Reservations WordPress plugin through 1.0.0 does not sanitise and escape some of the reservation user inputs, allowing unauthenticated attackers to perform Cross-Site Scripting attacks logged in admin viewing the malicious reservation made
nvd