The wp-support-plus-responsive-ticket-system plugin before 9.1.2 for WordPress has HTML...
6.1CVSS
6.6AI Score
0.001EPSS
The wp-support-plus-responsive-ticket-system plugin before 7.1.0 for WordPress has insecure direct object reference via a ticket...
9.8CVSS
9.3AI Score
0.002EPSS
The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has incorrect...
9.8CVSS
9.4AI Score
0.003EPSS
The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has SQL...
9.8CVSS
9.9AI Score
0.001EPSS
The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has full path...
5.3CVSS
5.3AI Score
0.001EPSS
The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has directory...
9.1CVSS
9.2AI Score
0.002EPSS
The wp-support-plus-responsive-ticket-system plugin before 4.1 for WordPress has JavaScript...
6.1CVSS
6.7AI Score
0.001EPSS
A stored cross-site scripting (XSS) vulnerability in the submit_ticket.php module in the WP Support Plus Responsive Ticket System plugin 9.1.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the subject parameter in...
6.1CVSS
5.9AI Score
0.001EPSS
Pradeep Makone wordpress Support Plus Responsive Ticket System version 9.0.2 and earlier contains a SQL Injection vulnerability in the function to get tickets, the parameter email in cookie was injected that can result in filter the parameter. This attack appear to be exploitable via web site,...
9.8CVSS
9.8AI Score
0.002EPSS