Vulnerabilities and security researches forwppizza wppizza
Direction: descendingAug 23, 2025
WPPizza – A Restaurant Plugin # CVE-2025-57894
- CVE, Research URL
- Home page URL
- Application
- Date
- Aug 22, 2025
- Research Description
- Missing Authorization vulnerability in ollybach WPPizza allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WPPizza: from n/a through 3.19.8.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
Feb 27, 2025
WPPizza – A Restaurant Plugin # CVE-2025-26991
- CVE, Research URL
- Home page URL
- Application
- Date
- Feb 25, 2025
- Research Description
- Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ollybach WPPizza allows Reflected XSS. This issue affects WPPizza: from n/a through 3.19.4.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
Jun 22, 2024
WPPizza – A Restaurant Plugin # CVE-2024-35766
- CVE, Research URL
- Home page URL
- Application
- Date
- Jun 21, 2024
- Research Description
- Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in ollybach WPPizza allows Reflected XSS.This issue affects WPPizza: from n/a through 3.18.13.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
Jun 07, 2024
WPPizza – A Restaurant Plugin # CVE-2013-6837
- CVE, Research URL
- Home page URL
- Application
- Date
- Dec 19, 2013
- Research Description
- Cross-site scripting (XSS) vulnerability in the setTimeout function in js/jquery.prettyPhoto.js in prettyPhoto 3.1.4 and earlier allows remote attackers to inject arbitrary web script or HTML via a crafted PATH_INTO to the default URI.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
WPPizza – A Restaurant Plugin # CVE-2023-46622
- CVE, Research URL
- Home page URL
- Application
- Date
- Oct 31, 2023
- Research Description
- Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in ollybach WPPizza – A Restaurant Plugin plugin <= 3.18.2 versions.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
WPPizza – A Restaurant Plugin # CVE-2024-33576
- CVE, Research URL
- Home page URL
- Application
- Date
- May 07, 2024
- Research Description
- Missing Authorization vulnerability in Ollybach WPPizza.This issue affects WPPizza: from n/a through 3.18.10.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
WPPizza – A Restaurant Plugin # 031ee55ed33d6b56ad6010b4bfd418bf365396b4
- CVE, Research URL
- Home page URL
- Application
- Date
- May 14, 2015
- Research Description
- WPPizza – A Restaurant Plugin [wppizza] < 2.11.8.18 WordPress WPPizza Plugin <= 2.11.8.0 - Cross Site Scripting Because of this vulnerability, the attackers can inject arbitrary web script or HTML. Update the plugin.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
WPPizza – A Restaurant Plugin # CVE-2023-32105
- CVE, Research URL
- Home page URL
- Application
- Date
- Aug 18, 2023
- Research Description
- Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in ollybach WPPizza – A Restaurant Plugin plugin <= 3.17.1 versions.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable