📦 Wp Recall

by Plechevandrey

🔍 What is Wp Recall?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-8292

CRITICAL CVSS 9.8 Sep 6, 2024

The WP-Recall plugin for WordPress has a critical vulnerability that allows unauthenticated attackers to reset any user's password by supplying their email address during new order creation. This lead...

CVE-2025-1323

HIGH CVSS 7.5 Mar 8, 2025

This SQL injection vulnerability in the WP-Recall WordPress plugin allows unauthenticated attackers to inject malicious SQL queries via the 'databeat' parameter. Attackers can extract sensitive inform...

CVE-2024-9770

MEDIUM CVSS 4.7 Mar 25, 2025

This vulnerability in the WP-Recall WordPress plugin allows administrators to perform SQL injection attacks due to unsanitized parameter usage in SQL statements. It affects WordPress sites running WP-...

CVE-2025-1324

MEDIUM CVSS 6.4 Mar 8, 2025

This vulnerability allows authenticated WordPress users with contributor-level access or higher to inject malicious scripts into website pages using the WP-Recall plugin's 'public-form' shortcode. The...

CVE-2024-1175

MEDIUM CVSS 5.3 Jun 6, 2024

The WP-Recall plugin for WordPress has a missing capability check that allows unauthenticated attackers to delete arbitrary payment records. This affects all WordPress sites using WP-Recall plugin ver...