Vulnerabilities > Metagauss > Registrationmagic > Medium

DATE CVE VULNERABILITY TITLE RISK
2025-01-31 CVE-2025-24686 Cross-site Scripting vulnerability in Metagauss Registrationmagic
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Metagauss User Registration Forms RegistrationMagic allows Reflected XSS.
network
low complexity
metagauss CWE-79
6.1
2024-08-19 CVE-2024-43317 Cross-site Scripting vulnerability in Metagauss Registrationmagic
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Metagauss User Registration Team RegistrationMagic allows Cross-Site Scripting (XSS).This issue affects RegistrationMagic: from n/a through 6.0.1.0.
network
low complexity
metagauss CWE-79
6.1
2024-08-01 CVE-2024-39643 Cross-site Scripting vulnerability in Metagauss Registrationmagic
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in RegistrationMagic Forms RegistrationMagic allows Stored XSS.This issue affects RegistrationMagic: from n/a through 6.0.0.1.
network
low complexity
metagauss CWE-79
6.1
2024-06-04 CVE-2023-51544 Unspecified vulnerability in Metagauss Registrationmagic
Improper Control of Interaction Frequency vulnerability in Metagauss RegistrationMagic allows Functionality Misuse.This issue affects RegistrationMagic: from n/a through 5.2.5.0.
network
low complexity
metagauss
5.3
2024-05-03 CVE-2024-33947 Unspecified vulnerability in Metagauss Registrationmagic
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Metagauss RegistrationMagic allows Reflected XSS.This issue affects RegistrationMagic: from n/a through 5.3.2.0.
network
low complexity
metagauss
6.1
2024-04-24 CVE-2023-23989 Unspecified vulnerability in Metagauss Registrationmagic
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Metagauss RegistrationMagic.This issue affects RegistrationMagic: from n/a through 5.1.9.2.
network
low complexity
metagauss
6.5
2024-03-26 CVE-2024-2951 Unspecified vulnerability in Metagauss Registrationmagic
Cross-Site Request Forgery (CSRF) vulnerability in Metagauss RegistrationMagic.This issue affects RegistrationMagic: from n/a through 5.3.0.0.
network
low complexity
metagauss
4.3
2024-03-19 CVE-2024-29113 Unspecified vulnerability in Metagauss Registrationmagic
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Metagauss RegistrationMagic allows Reflected XSS.This issue affects RegistrationMagic: from n/a through 5.2.5.9.
network
low complexity
metagauss
6.1
2024-02-01 CVE-2023-51509 Unspecified vulnerability in Metagauss Registrationmagic
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Metagauss RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login allows Reflected XSS.This issue affects RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login: from n/a through 5.2.4.1.
network
low complexity
metagauss
6.1
2022-02-01 CVE-2021-24648 Cross-site Scripting vulnerability in Metagauss Registrationmagic
The RegistrationMagic WordPress plugin before 5.0.1.9 does not sanitise and escape the rm_search_value parameter before outputting back in an attribute, leading to a Reflected Cross-Site Scripting
network
low complexity
metagauss CWE-79
6.1