WP-Recall – Registration, Profile, Commerce & More

The WP Recall plugin offers a customizable personal account for website users, including features such as communication, profile customization, interest groups, forum interaction, and online store payments. The base plugin includes Profile Recall, Rcl Chat, Rating System, and Public Recall. A video showcasing the plugin's capabilities is available on the website, along with addons, documentation, and support.

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Input validation vulnerability in WP-Recall – Registration, Profile, Commerce & More 16.26.14

    Open

    The WP-Recall plugin for WordPress can be easily attacked by hackers due to a lack of proper security measures. This means that anyone can insert harmful code into the website if they can trick a use...

    Read More
  • Access violation vulnerability in WP-Recall – Registration, Profile, Commerce & More 16.26.14

    Open

    The WP-Recall plugin for WordPress has a security vulnerability that allows unauthorized access. This means that people who are not logged in can do things they shouldn't be able to do.

    Read More
  • Input validation vulnerability in WP-Recall – Registration, Profile, Commerce & More 16.26.14

    Open

    A popular plugin for WordPress called WP-Recall has a security issue. This issue, known as Cross-Site Request Forgery, affects all versions up to 16.26.14. It happens because a certain function does ...

    Read More
  • Input validation vulnerability in WP-Recall – Registration, Profile, Commerce & More 16.26.14

    Open

    The WP-Recall plugin for WordPress has a security issue in versions 16.26.14 and below. This means that attackers who have contributor-level access or higher can include and run any files they want o...

    Read More
  • Input validation vulnerability in WP-Recall – Registration, Profile, Commerce & More 16.26.11

    Fixed

    The WP-Recall plugin for WordPress has a security issue where hackers can insert harmful code in the admin settings. This can only happen on certain types of WordPress installations and only affects ...

    Read More
  • Input validation vulnerability in WP-Recall – Registration, Profile, Commerce & More 16.26.11

    Fixed

    The WP-Recall plugin for WordPress has a security issue that allows hackers to access sensitive information from the database. This is because the plugin does not properly protect against SQL Injecti...

    Read More
  • Access violation vulnerability in WP-Recall – Registration, Profile, Commerce & More 16.26.10

    Fixed

    The WP-Recall plugin for WordPress has a security vulnerability that allows anyone with Subscriber-level access or higher to execute any shortcodes they want. This can happen because there is no chec...

    Read More
  • Access violation vulnerability in WP-Recall – Registration, Profile, Commerce & More 16.26.10

    Fixed

    The WP-Recall plugin for WordPress has a security issue that allows unauthorized users to view data from posts that are supposed to be private or restricted. This vulnerability affects all versions u...

    Read More
  • Input validation vulnerability in WP-Recall – Registration, Profile, Commerce & More 16.26.10

    Fixed

    The WP-Recall plugin for WordPress has a security issue that allows hackers to access sensitive information from the database. This is due to a problem with the 'databeat' parameter in all versions u...

    Read More
  • Input validation vulnerability in WP-Recall – Registration, Profile, Commerce & More 16.26.10

    Fixed

    The WP-Recall plugin for WordPress has a security vulnerability that allows attackers to insert harmful code into web pages. This can happen when a user with a certain level of access uses the plugin...

    Read More
  • Access violation vulnerability in WP-Recall – Registration, Profile, Commerce & More 16.26.8

    Fixed

    The WP-Recall plugin for WordPress has a security issue that allows unauthorized users to take over accounts. This can happen in all versions up to 16.26.8 because the plugin does not properly check ...

    Read More
  • Input validation vulnerability in WP-Recall – Registration, Profile, Commerce & More 16.26.6

    Fixed

    A popular plugin for WordPress called WP-Recall has a security issue that allows attackers to trick site administrators into performing unauthorized actions. This can happen if the administrator clic...

    Read More
  • Access violation vulnerability in WP-Recall – Registration, Profile, Commerce & More 16.26.6

    Fixed

    The WP-Recall plugin for WordPress has a security issue that could lead to important data being lost without permission. This happens because the 'delete_payment' function does not check for the righ...

    Read More
  • Input validation vulnerability in WP-Recall – Registration, Profile, Commerce & More 16.26.5

    Fixed

    The WP-Recall plugin for WordPress has a security issue that allows hackers to access sensitive information from the database. This is because the plugin does not properly protect against SQL Injecti...

    Read More
  • Input validation vulnerability in WP-Recall – Registration, Profile, Commerce & More 16.26.5

    Fixed

    The WP-Recall plugin for WordPress has a security issue called SQL Injection. It affects all versions up to and including 16.26.5. This vulnerability is due to not properly protecting user input and ...

    Read More
  • Access violation vulnerability in WP-Recall – Registration, Profile, Commerce & More 16.26.5

    Fixed

    The WP-Recall plugin for WordPress, which helps with registration, profiles, and commerce, has a security issue. This issue, called Insecure Direct Object Reference, affects all versions up to and in...

    Read More
  • Input validation vulnerability in WP-Recall – Registration, Profile, Commerce & More 16.24.47

    Fixed

    The WP-Recall plugin for WordPress is vulnerable to a type of security issue called Reflected Cross-Site Scripting. This type of attack happens when a user is tricked into performing an action like c...

    Read More