Known Vulnerabilities for RegistrationMagic by Metagauss
Listed below are 10 of the newest known vulnerabilities associated with "RegistrationMagic" by "Metagauss".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-82225 json | Unauthenticated Broken Authentication in RegistrationMagic <= 6.0.9.8 versions. | Not Provided | 2026-08-31 | 2026-09-01 |
| CVE-2026-82221 json | Unauthenticated Cross Site Scripting (XSS) in RegistrationMagic <= 6.0.9.8 versions. | Not Provided | 2026-08-31 | 2026-09-01 |
| CVE-2026-77794 json | The RegistrationMagic WordPress plugin before 6.0.9.9 does not validate a client-supplied quantity multiplier when calculatin... | Not Provided | 2026-09-02 | 2026-09-02 |
| CVE-2026-77793 json | The RegistrationMagic WordPress plugin before 6.0.9.9 does not validate the total price of a paid registration server-side, a... | Not Provided | 2026-09-02 | 2026-09-02 |
| CVE-2026-77792 json | The RegistrationMagic WordPress plugin before 6.0.9.9 does not escape a registration form field value before outputting it i... | Not Provided | 2026-09-02 | 2026-09-02 |
| CVE-2026-77790 json | The RegistrationMagic WordPress plugin before 6.0.9.4 does not sanitise and escape a parameter before using it in a SQL stat... | Not Provided | 2026-08-26 | 2026-08-26 |
| CVE-2026-73341 json | Unauthenticated PHP Object Injection in RegistrationMagic <= 6.0.9.7 versions. | Not Provided | 2026-08-18 | 2026-08-18 |
| CVE-2026-49764 json | Unauthenticated Broken Authentication in RegistrationMagic <= 6.0.8.6 versions. | Not Provided | 2026-06-15 | 2026-06-15 |
| CVE-2026-15257 json | The RegistrationMagic WordPress plugin before 6.0.9.4 does not perform authorization, ownership or nonce checks on a front-e... | Not Provided | 2026-07-30 | 2026-07-30 |
| CVE-2026-15255 json | The RegistrationMagic WordPress plugin before 6.0.9.4 does not properly validate that a one-time password presented in a coo... | Not Provided | 2026-07-30 | 2026-07-30 |