plugin

Custom Registration Form Builder With Submission Manager Vulnerabilities

110 known security issues reported for the Custom Registration Form Builder With Submission Manager WordPress plugin. Most recent disclosed Aug 18, 2026.

8 critical 12 high 36 medium

Running Custom Registration Form Builder With Submission Manager on your site? Check whether your installed version is affected.

Scan your site free

RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login <= 6.0.9.7 - Unauthenticated PHP Object Injection

high

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 6.0.9.7. This is due to deserialization of untrusted input. This makes it possible for unauthenticated attackers to inject a PHP...

CVSS:
8.1
Affected:
up to 6.0.9.7
Fixed in:
6.0.9.8
Disclosed:
Aug 18, 2026

CVE-2026-73341 on NVD →

RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login < 6.0.9.4 - Missing Authorization

medium

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to 6.0.9.4. This makes it possible for unauthenticated attackers to perform an unauthorized action.

CVSS:
5.3
Affected:
up to 6.0.9.4
Fixed in:
6.0.9.4
Disclosed:
Jul 30, 2026

CVE-2026-15257 on NVD →

RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login < 6.0.9.4 - Unauthenticated Insecure Direct Object Reference

medium

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to 6.0.9.4 due to missing validation on a user controlled key. This makes it possible for unauthenticated attackers to perform an unauthoriz...

CVSS:
5.3
Affected:
up to 6.0.9.4
Fixed in:
6.0.9.4
Disclosed:
Jul 30, 2026

CVE-2026-15255 on NVD →

RegistrationMagic <= 6.0.9.4 - Unauthenticated Price Manipulation

medium

The RegistrationMagic plugin for WordPress is vulnerable to Price Manipulation in versions up to, and including, 6.0.9.4. This is due to a lack of server-side verification of the captured payment amount, currency, invoice ID, and custom payment key against the locally stored payment log in the PayPal SDK callback handl...

CVSS:
5.3
Affected:
up to 6.0.9.4
Fixed in:
6.0.9.5
Disclosed:
Jul 20, 2026

CVE-2026-15208 on NVD →

RegistrationMagic <= 6.0.9.1 - Cross-Site Request Forgery to Privilege Escalation via 'rmc_assign_user_role_action' Parameter

high

The RegistrationMagic – User Registration Forms Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 6.0.9.1. This is due to missing or incorrect nonce validation on the process_request function. This makes it possible for unauthenticated attackers to escalate th...

CVSS:
8.8
Affected:
up to 6.0.9.1
Fixed in:
6.0.9.2
Disclosed:
Jun 30, 2026

CVE-2026-12158 on NVD →

RegistrationMagic <= 6.0.8.6 - Authenticated (Subscriber+) Authentication Bypass via Forged PayPal IPN Request

medium

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to Authentication Bypass via Insufficient Verification of Data Authenticity in all versions up to and including 6.0.8.6. This is due to the PayPal IPN `callback` handler being registered as a...

CVSS:
5.3
Affected:
up to 6.0.8.6
Fixed in:
6.0.8.7
Disclosed:
Jun 26, 2026

CVE-2026-9242 on NVD →

RegistrationMagic – User Registration Forms Plugin <= 6.0.8.6 - Missing Authorization

medium

The RegistrationMagic – User Registration Forms Plugin plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to, and including, 6.0.8.6. This makes it possible for unauthenticated attackers to perform an unauthorized action.

CVSS:
5.3
Affected:
up to 6.0.8.6
Fixed in:
6.0.8.7
Disclosed:
Jun 4, 2026

CVE-2026-49764 on NVD →

RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login <= 6.0.7.6 - Missing Authorization

medium

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to, and including, 6.0.7.6. This makes it possible for unauthenticated attackers to perform an unauth...

CVSS:
5.3
Affected:
up to 6.0.7.6
Fixed in:
6.0.7.7
Disclosed:
Mar 20, 2026

CVE-2026-32498 on NVD →

RegistrationMagic - Subscriber+ Sensitive Data Disclosure vulnerability

medium

Subscriber+ Sensitive Data Disclosure vulnerability

CVSS:
4.3
Affected:
up to 6.0.7.2
Fixed in:
6.0.7.2
Disclosed:
Mar 12, 2026

RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login <= 6.0.7.1 - Authentication Bypass

critical

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 6.0.7.1. This makes it possible for unauthenticated attackers to bypass authentication.

CVSS:
9.8
Affected:
up to 6.0.7.1
Fixed in:
6.0.7.2
Disclosed:
Mar 12, 2026

CVE-2026-24373 on NVD →

RegistrationMagic <= 6.0.7.6 - Missing Authorization

medium

The RegistrationMagic plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to, and including, 6.0.7.6. This makes it possible for authenticated attackers, with subscriber-level access and above, to perform an unauthorized action.

CVSS:
4.3
Affected:
up to 6.0.7.6
Fixed in:
6.0.7.7
Disclosed:
Feb 18, 2026

CVE-2026-32385 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 6.0.7.0

unknown

[en] The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to payment bypass due to insufficient verification of data authenticity on the 'process_paypal_sdk_payment' function in all versions up to, and including, 6.0.6.9. This is due to the plu...

Affected:
up to 6.0.7.0
Fixed in:
6.0.7.0
Disclosed:
Feb 18, 2026

CVE-2025-14444 on NVD →

RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login <= 6.0.6.9 - Unauthenticated Payment Bypass via rm_process_paypal_sdk_payment

medium

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to payment bypass due to insufficient verification of data authenticity on the 'process_paypal_sdk_payment' function in all versions up to, and including, 6.0.6.9. This is due to the plugin t...

CVSS:
5.3
Affected:
up to 6.0.6.9
Fixed in:
6.0.7.0
Disclosed:
Feb 17, 2026

CVE-2025-14444 on NVD →

RegistrationMagic < 6.0.7.2 - Missing Authorization

medium

The RegistrationMagic plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to 6.0.7.2. This makes it possible for authenticated attackers, with subscriber-level access and above, to perform an unauthorized action.

CVSS:
4.3
Affected:
up to 6.0.7.2
Fixed in:
6.0.7.2
Disclosed:
Feb 16, 2026

CVE-2026-0929 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 6.0.7.2

unknown

[en] The RegistrationMagic WordPress plugin before 6.0.7.2 checks nonces but not capabilities, allowing for the disclosure of some sensitive data to subscribers and above.

Affected:
up to 6.0.7.2
Fixed in:
6.0.7.2
Disclosed:
Feb 13, 2026

CVE-2025-15520 on NVD →

RegistrationMagic <= 6.0.7.4 - Missing Authorization to Unauthenticated Arbitrary Settings Modification

medium

The RegistrationMagic plugin for WordPress is vulnerable to Missing Authorization in versions up to, and including, 6.0.7.4. This is due to missing nonce verification and capability checks on the rm_set_otp AJAX action handler. This makes it possible for unauthenticated attackers to modify arbitrary plugin settings, in...

CVSS:
5.3
Affected:
up to 6.0.7.4
Fixed in:
6.0.7.5
Disclosed:
Jan 27, 2026

CVE-2026-1054 on NVD →

RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login <= 6.0.7.1 - Authenticated (Subscriber+) Information Exposure

medium

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 6.0.7.1. This makes it possible for authenticated attackers, with Subscriber-level access and above, to extract sensiti...

CVSS:
5.3
Affected:
up to 6.0.7.1
Fixed in:
6.0.7.2
Disclosed:
Jan 23, 2026

CVE-2025-15520 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] <= 6.0.6.9 (unfixed)

unknown

[en] Cross-Site Request Forgery (CSRF) vulnerability in Metagauss RegistrationMagic custom-registration-form-builder-with-submission-manager allows Cross Site Request Forgery.This issue affects RegistrationMagic: from n/a through <= 6.0.6.9.

Affected:
up to 6.0.6.9
Fix:
No patched version reported
Disclosed:
Jan 22, 2026

CVE-2026-24374 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 6.0.7.2

unknown

[en] The RegistrationMagic plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 6.0.7.1. This is due to the 'add_menu' function is accessible via the 'rm_user_exists' AJAX action and allows arbitrary updates to the 'admin_order' setting. This makes it possible for unauthentic...

Affected:
up to 6.0.7.2
Fixed in:
6.0.7.2
Disclosed:
Jan 17, 2026

CVE-2025-15403 on NVD →

RegistrationMagic <= 6.0.7.1 - Unauthenticated Privilege Escalation via admin_order

critical

The RegistrationMagic plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 6.0.7.1. This is due to the 'add_menu' function is accessible via the 'rm_user_exists' AJAX action and allows arbitrary updates to the 'admin_order' setting. This makes it possible for unauthenticated...

CVSS:
9.8
Affected:
up to 6.0.7.1
Fixed in:
6.0.7.2
Disclosed:
Jan 16, 2026

CVE-2025-15403 on NVD →

RegistrationMagic <= 6.0.6.9 - Cross-Site Request Forgery

medium

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 6.0.6.9. This is due to missing or incorrect nonce validation on a function. This makes it possible for unauthenticated att...

CVSS:
4.3
Affected:
up to 6.0.6.9
Fixed in:
6.0.7.0
Disclosed:
Jan 10, 2026

CVE-2026-24374 on NVD →

RegistrationMagic <= 6.0.6.7 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'RM_Forms' Shortcode

medium

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'RM_Forms' shortcode in all versions up to, and including, 6.0.6.7 due to insufficient input sanitization and output escaping on the 'theme' at...

CVSS:
6.4
Affected:
up to 6.0.6.7
Fixed in:
6.0.6.8
Disclosed:
Dec 15, 2025

CVE-2025-13610 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 6.0.6.8

unknown

[en] The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'RM_Forms' shortcode in all versions up to, and including, 6.0.6.7 due to insufficient input sanitization and output escaping on the 'them...

Affected:
up to 6.0.6.8
Fixed in:
6.0.6.8
Disclosed:
Dec 15, 2025

CVE-2025-13610 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 3.7.9.3

unknown

[en] The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to PHP Object Injection in all versions up to 3.7.9.3 (exclusive) via deserialization of untrusted input from the is_expired_by_date() function. This makes it possible for unauthenticate...

Affected:
up to 3.7.9.3
Fixed in:
3.7.9.3
Disclosed:
Oct 18, 2025

CVE-2017-20208 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 6.0.6.3

unknown

[en] The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to SQL Injection in all versions up to, and including, 6.0.6.2 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. T...

Affected:
up to 6.0.6.3
Fixed in:
6.0.6.3
Disclosed:
Oct 8, 2025

CVE-2025-11204 on NVD →

RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login <= 6.0.6.2 - Authenticated (Administrator+) SQL Injection

high

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to SQL Injection in all versions up to, and including, 6.0.6.2 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This m...

CVSS:
7.2
Affected:
up to 6.0.6.2
Fixed in:
6.0.6.3
Disclosed:
Oct 7, 2025

CVE-2025-11204 on NVD →

RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login <= 6.0.4.3 - Authenticated (Subscriber+) Stored Cross-Site Scripting

medium

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘payment_method’ parameter in all versions up to, and including, 6.0.4.3 due to insufficient input sanitization and output escaping. This makes it possi...

CVSS:
6.4
Affected:
up to 6.0.4.3
Fixed in:
6.0.4.4
Disclosed:
Apr 2, 2025

CVE-2025-2836 on NVD →

RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login <= 6.0.2 - Authenticated (Admin+) Stored Cross-Site Scripting

medium

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 6.0.2 due to insufficient input sanitization and output escaping. This makes it possible for authentica...

CVSS:
4.4
Affected:
up to 6.0.2
Fixed in:
6.0.2.1
Disclosed:
Mar 3, 2025

CVE-2024-9390 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 6.0.3.4

unknown

[en] Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Metagauss User Registration Forms RegistrationMagic allows Reflected XSS. This issue affects RegistrationMagic: from n/a through 6.0.3.3.

Affected:
up to 6.0.3.4
Fixed in:
6.0.3.4
Disclosed:
Jan 31, 2025

CVE-2025-24686 on NVD →

RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login <= 6.0.3.3 - Reflected Cross-Site Scripting

medium

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to, and including, 6.0.3.3 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attacker...

CVSS:
6.1
Affected:
up to 6.0.3.3
Fixed in:
6.0.3.4
Disclosed:
Jan 28, 2025

CVE-2025-24686 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 5.2.3.1

unknown

[en] Missing Authorization vulnerability in Metagauss User Registration Forms RegistrationMagic allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects RegistrationMagic: from n/a through 5.2.3.0.

Affected:
up to 5.2.3.1
Fixed in:
5.2.3.1
Disclosed:
Dec 9, 2024

CVE-2023-49831 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 6.0.2.7

unknown

[en] The RegistrationMagic – User Registration Plugin with Custom Registration Forms plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 6.0.2.6. This is due to the plugin not properly validating the password reset token prior to updating a user's passwo...

Affected:
up to 6.0.2.7
Fixed in:
6.0.2.7
Disclosed:
Nov 9, 2024

CVE-2024-10508 on NVD →

RegistrationMagic – User Registration Plugin with Custom Registration Forms <= 6.0.2.6 - Unauthenticated Privilege Escalation via Password Recovery

critical

The RegistrationMagic – User Registration Plugin with Custom Registration Forms plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 6.0.2.6. This is due to the plugin not properly validating the password reset token prior to updating a user's password. T...

CVSS:
9.8
Affected:
up to 6.0.2.6
Fixed in:
6.0.2.7
Disclosed:
Nov 8, 2024

CVE-2024-10508 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 6.0.1.1

unknown

[en] Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Metagauss User Registration Team RegistrationMagic allows Cross-Site Scripting (XSS).This issue affects RegistrationMagic: from n/a through 6.0.1.0.

Affected:
up to 6.0.1.1
Fixed in:
6.0.1.1
Disclosed:
Aug 19, 2024

CVE-2024-43317 on NVD →

RegistrationMagic <= 6.0.1.0 - Unauthenticated Stored Cross-Site Scripting

high

The RegistrationMagic – User Registration Plugin with Custom Registration Forms plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 6.0.1.0 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbit...

CVSS:
7.2
Affected:
up to 6.0.1.0
Fixed in:
6.0.1.1
Disclosed:
Aug 16, 2024

CVE-2024-43317 on NVD →

RegistrationMagic <= 6.0.0.1 - Unauthenticated Stored Cross-Site Scripting

high

The RegistrationMagic – User Registration Plugin with Custom Registration Forms plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 6.0.0.1 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbit...

CVSS:
7.2
Affected:
up to 6.0.0.1
Fixed in:
6.0.0.2
Disclosed:
Aug 1, 2024

CVE-2024-39643 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 6.0.0.2

unknown

[en] Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in RegistrationMagic Forms RegistrationMagic allows Stored XSS.This issue affects RegistrationMagic: from n/a through 6.0.0.1.

Affected:
up to 6.0.0.2
Fixed in:
6.0.0.2
Disclosed:
Aug 1, 2024

CVE-2024-39643 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 5.2.5.1

unknown

[en] Authentication Bypass by Spoofing vulnerability in Metagauss RegistrationMagic allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects RegistrationMagic: from n/a through 5.2.5.0.

Affected:
up to 5.2.5.1
Fixed in:
5.2.5.1
Disclosed:
Jun 4, 2024

CVE-2023-51543 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 5.2.5.1

unknown

[en] Improper Control of Interaction Frequency vulnerability in Metagauss RegistrationMagic allows Functionality Misuse.This issue affects RegistrationMagic: from n/a through 5.2.5.0.

Affected:
up to 5.2.5.1
Fixed in:
5.2.5.1
Disclosed:
Jun 4, 2024

CVE-2023-51544 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 5.3.2.1

unknown

[en] Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Metagauss RegistrationMagic allows Reflected XSS.This issue affects RegistrationMagic: from n/a through 5.3.2.0.

Affected:
up to 5.3.2.1
Fixed in:
5.3.2.1
Disclosed:
May 3, 2024

CVE-2024-33947 on NVD →

RegistrationMagic <= 5.3.2.0 - Reflected Cross-Site Scripting

medium

The RegistrationMagic – User Registration Plugin with Custom Registration Forms plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to, and including, 5.3.2.0 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject ar...

CVSS:
6.1
Affected:
up to 5.3.2.0
Fixed in:
5.3.2.1
Disclosed:
Apr 30, 2024

CVE-2024-33947 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 5.1.9.3

unknown

[en] Incorrect Default Permissions vulnerability in Metagauss RegistrationMagic allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects RegistrationMagic: from n/a through 5.1.9.2.

Affected:
up to 5.1.9.3
Fixed in:
5.1.9.3
Disclosed:
Apr 24, 2024

CVE-2023-23976 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 5.1.9.3

unknown

[en] Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Metagauss RegistrationMagic.This issue affects RegistrationMagic: from n/a through 5.1.9.2.

Affected:
up to 5.1.9.3
Fixed in:
5.1.9.3
Disclosed:
Apr 24, 2024

CVE-2023-23989 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 5.3.1.0

unknown

[en] The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to privilege escalation due to a missing capability check on the update_users_role() function in all versions up to, and including, 5.3.0.0. This makes it possible for authenticated atta...

Affected:
up to 5.3.1.0
Fixed in:
5.3.1.0
Disclosed:
Apr 9, 2024

CVE-2024-1991 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 5.3.2.0

unknown

[en] The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to blind SQL Injection via the ‘id’ parameter of the RM_Form shortcode in all versions up to, and including, 5.3.1.0 due to insufficient escaping on the user supplied parameter and lack...

Affected:
up to 5.3.2.0
Fixed in:
5.3.2.0
Disclosed:
Apr 9, 2024

CVE-2024-1990 on NVD →

RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login <= 5.3.1.0 - Authenticated (Contributor+) SQL Injection via Shortcode

high

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to blind SQL Injection via the ‘id’ parameter of the RM_Form shortcode in all versions up to, and including, 5.3.1.0 due to insufficient escaping on the user supplied parameter and lack of su...

CVSS:
8.8
Affected:
up to 5.3.1.0
Fixed in:
5.3.2.0
Disclosed:
Mar 26, 2024

CVE-2024-1990 on NVD →

RegistrationMagic <= 5.3.0.0 - Cross-Site Request Forgery

medium

The RegistrationMagic plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.3.0.0. This is due to missing or incorrect nonce validation on a function. This makes it possible for unauthenticated attackers to perform an unauthorized action via a forged request granted they c...

CVSS:
4.3
Affected:
up to 5.3.0.0
Fixed in:
5.3.1.0
Disclosed:
Mar 26, 2024

CVE-2024-2951 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 5.3.1.0

unknown

[en] Cross-Site Request Forgery (CSRF) vulnerability in Metagauss RegistrationMagic.This issue affects RegistrationMagic: from n/a through 5.3.0.0.

Affected:
up to 5.3.1.0
Fixed in:
5.3.1.0
Disclosed:
Mar 26, 2024

CVE-2024-2951 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 5.2.6.0

unknown

[en] Missing Authorization vulnerability in Metagauss RegistrationMagic.This issue affects RegistrationMagic: from n/a through 5.2.5.9.

Affected:
up to 5.2.6.0
Fixed in:
5.2.6.0
Disclosed:
Mar 21, 2024

CVE-2024-25935 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 5.2.6.0

unknown

[en] Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Metagauss RegistrationMagic allows Reflected XSS.This issue affects RegistrationMagic: from n/a through 5.2.5.9.

Affected:
up to 5.2.6.0
Fixed in:
5.2.6.0
Disclosed:
Mar 19, 2024

CVE-2024-29113 on NVD →

RegistrationMagic <= 5.2.5.9 - Reflected Cross-Site Scripting

medium

The RegistrationMagic plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 5.2.5.9 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successf...

CVSS:
6.1
Affected:
up to 5.2.5.9
Fixed in:
5.2.6.0
Disclosed:
Mar 16, 2024

CVE-2024-29113 on NVD →

RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login <= 5.3.0.0 - Authenticated (Subscriber+) Privilege Escalation

high

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to privilege escalation due to a missing capability check on the update_users_role() function in all versions up to, and including, 5.3.0.0. This makes it possible for authenticated attackers...

CVSS:
8.8
Affected:
up to 5.3.0.0
Fixed in:
5.3.1.0
Disclosed:
Mar 14, 2024

CVE-2024-1991 on NVD →

RegistrationMagic <= 5.2.5.9 - Cross-Site Request Forgery

medium

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 5.2.5.9. This is due to missing or incorrect nonce validation on the rm_options_default_payment_method() function. This mak...

CVSS:
4.3
Affected:
up to 5.2.5.9
Fixed in:
5.2.6.0
Disclosed:
Feb 20, 2024

CVE-2024-25935 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 5.2.6.0

unknown

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 5.2.5.9. This is due to missing or incorrect nonce validation on the rm_options_default_payment_method() function. This mak...

Affected:
up to 5.2.6.0
Fixed in:
5.2.6.0
Disclosed:
Feb 20, 2024

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 5.2.4.2

unknown

[en] Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Metagauss RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login allows Reflected XSS.This issue affects RegistrationMagic – Custom Registration Forms, User Registration, Payment...

Affected:
up to 5.2.4.2
Fixed in:
5.2.4.2
Disclosed:
Feb 1, 2024

CVE-2023-51509 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 5.2.4.6

unknown

[en] Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in RegistrationMagic RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login.This issue affects RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Lo...

Affected:
up to 5.2.4.6
Fixed in:
5.2.4.6
Disclosed:
Dec 28, 2023

CVE-2023-50846 on NVD →

RegistrationMagic <= 5.2.5.0 - IP Spoofing

medium

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to IP Address Spoofing in all versions up to, and including, 5.2.5.0 due to use of user-supplied HTTP headers as a primary method for IP retrieval. This makes it possible for unauthenticated...

CVSS:
5.3
Affected:
up to 5.2.5.0
Fixed in:
5.2.5.1
Disclosed:
Dec 27, 2023

CVE-2023-51543 on NVD →

RegistrationMagic <= 5.2.5.0 - Form Submission Limit Bypass

medium

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to form submission limit bypass in all versions up to, and including, 5.2.5.0 due to insufficient protection logic. This makes it possible for unauthenticated attackers to submit more form en...

CVSS:
5.3
Affected:
up to 5.2.5.0
Fixed in:
5.2.5.1
Disclosed:
Dec 27, 2023

CVE-2023-51544 on NVD →

RegistrationMagic Plugin <= 5.2.4.5 - Authenticated(Administrator+) SQL Injection

medium

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to SQL Injection via an unknown parameter in all versions up to and including 5.2.4.5 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the exi...

CVSS:
6.6
Affected:
up to 5.2.4.6
Fixed in:
5.2.4.6
Disclosed:
Dec 21, 2023

CVE-2023-50846 on NVD →

RegistrationMagic <= 5.2.3.0 - Missing Authorization

medium

The RegistrationMagic plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the update_user_profile() function in versions up to, and including, 5.2.3.0. This makes it possible for unauthenticated attackers to update other user's profiles.

CVSS:
5.3
Affected:
up to 5.2.3.0
Fixed in:
5.2.3.1
Disclosed:
Dec 5, 2023

CVE-2023-49831 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 5.2.3.0

unknown

[en] Cross-Site Request Forgery (CSRF) vulnerability in RegistrationMagic RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login allows Cross Site Request Forgery.This issue affects RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login: from n/a thr...

Affected:
up to 5.2.3.0
Fixed in:
5.2.3.0
Disclosed:
Nov 30, 2023

CVE-2023-47645 on NVD →

RegistrationMagic <= 5.2.2.6 - Cross-Site Request Forgery

medium

The RegistrationMagic plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.2.2.6. This is due to missing or incorrect nonce validation on an unknown function. This makes it possible for unauthenticated attackers to perform an unauthorized action via a forged request grant...

CVSS:
4.3
Affected:
up to 5.2.2.6
Fixed in:
5.2.3.0
Disclosed:
Nov 27, 2023

CVE-2023-47645 on NVD →

RegistrationMagic <= 5.2.4.1 - Reflected Cross-Site Scripting via section_id

medium

The RegistrationMagic plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘section_id’ parameter in versions up to, and including, 5.2.4.1 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages th...

CVSS:
6.1
Affected:
up to 5.2.4.2
Fixed in:
5.2.4.2
Disclosed:
Oct 7, 2023

CVE-2023-51509 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 5.2.4.2

unknown

The RegistrationMagic plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘section_id’ parameter in versions up to, and including, 5.2.4.1 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages th...

Affected:
up to 5.2.4.2
Fixed in:
5.2.4.2
Disclosed:
Oct 7, 2023

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 5.2.1.1

unknown

[en] The RegistrationMagic plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 5.2.1.0. This is due to insufficient verification on the user being supplied during a Google social login through the plugin. This makes it possible for unauthenticated attackers to log in as any exi...

Affected:
up to 5.2.1.1
Fixed in:
5.2.1.1
Disclosed:
May 16, 2023

CVE-2023-2499 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 5.2.1.0

unknown

[en] The RegistrationMagic plugin for WordPress is vulnerable to Insecure Direct Object References in versions up to, and including, 5.2.0.5. This is due to the plugin providing user-controlled access to objects, letting a user bypass authorization and access system resources. This makes it possible for authenticated a...

Affected:
up to 5.2.1.0
Fixed in:
5.2.1.0
Disclosed:
May 16, 2023

CVE-2023-2548 on NVD →

RegistrationMagic <= 5.2.1.0 - Authentication Bypass

critical

The RegistrationMagic plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 5.2.1.0. This is due to insufficient verification on the user being supplied during a Google social login through the plugin. This makes it possible for unauthenticated attackers to log in as any existing...

CVSS:
9.8
Affected:
up to 5.2.1.0
Fixed in:
5.2.1.1
Disclosed:
May 15, 2023

CVE-2023-2499 on NVD →

RegistrationMagic <= 5.2.0.5 - Authenticated (Admin+) Insecure Direct Object Reference to Arbitrary User Password Change

medium

The RegistrationMagic plugin for WordPress is vulnerable to Insecure Direct Object References in versions up to, and including, 5.2.0.5. This is due to the plugin providing user-controlled access to objects, letting a user bypass authorization and access system resources. This makes it possible for authenticated attack...

CVSS:
6.6
Affected:
up to 5.2.0.5
Fixed in:
5.2.1.0
Disclosed:
May 12, 2023

CVE-2023-2548 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 5.1.9.3

unknown

[en] Cross-Site Request Forgery (CSRF) vulnerability in RegistrationMagic plugin <= 5.1.9.2 versions.

Affected:
up to 5.1.9.3
Fixed in:
5.1.9.3
Disclosed:
Mar 13, 2023

CVE-2023-25991 on NVD →

RegistrationMagic <= 5.1.9.2 - Cross-Site Request Forgery leading to Form Metadata Deletion

medium

The RegistrationMagic plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 5.1.9.2. This is due to missing or incorrect nonce validation on the 'remove' function inside the 'class_rm_form_controller.php' file. This makes it possible for unauthenticated attackers to remove c...

CVSS:
5.4
Affected:
up to 5.1.9.2
Fixed in:
5.1.9.3
Disclosed:
Feb 17, 2023

CVE-2023-25991 on NVD →

RegistrationMagic <= 5.1.9.2 - Missing Authorization to Unauthenticated Content Injection

medium

The RegistrationMagic plugin for WordPress is vulnerable to content injection in versions up to, and including, 5.1.9.2. This is due to insufficient authorization checks. This makes it possible for unauthenticated attackers to alter the content on select pages.

CVSS:
5.3
Affected:
up to 5.1.9.2
Fixed in:
5.1.9.3
Disclosed:
Jan 20, 2023

CVE-2023-23989 on NVD →

RegistrationMagic <= 5.1.9.2 - Improper Authorization to Price Change

medium

The RegistrationMagic plugin for WordPress is vulnerable to authorization bypass in versions up to, and including, 5.1.9.2. This makes it possible for unauthenticated attackers to alter the price of registrations.

CVSS:
5.3
Affected:
up to 5.1.9.2
Fixed in:
5.1.9.3
Disclosed:
Jan 20, 2023

CVE-2023-23976 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 5.0.2.2

unknown

[en] The RegistrationMagic WordPress plugin before 5.0.2.2 does not sanitise and escape the rm_form_id parameter before using it in a SQL statement in the Automation admin dashboard, allowing high privilege users to perform SQL injection attacks

Affected:
up to 5.0.2.2
Fixed in:
5.0.2.2
Disclosed:
Mar 7, 2022

CVE-2022-0420 on NVD →

RegistrationMagic <= 5.0.2.1 - SQL Injection

high

The RegistrationMagic WordPress plugin before 5.0.2.2 does not sanitise and escape the rm_form_id parameter before using it in a SQL statement in the Automation admin dashboard, allowing high privilege users to perform SQL injection attacks

CVSS:
7.2
Affected:
up to 5.0.2.2
Fixed in:
5.0.2.2
Disclosed:
Feb 7, 2022

CVE-2022-0420 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 5.0.2.2

unknown

[en] The RegistrationMagic WordPress plugin before 5.0.1.9 does not sanitise and escape the rm_search_value parameter before outputting back in an attribute, leading to a Reflected Cross-Site Scripting

Affected:
up to 5.0.2.2
Fixed in:
5.0.2.2
Disclosed:
Feb 1, 2022

CVE-2021-24648 on NVD →

RegistrationMagic <= 5.0.1.5 - SQL Injection

high

The RegistrationMagic WordPress plugin before 5.0.1.6 does not escape user input in its rm_chronos_ajax AJAX action before using it in a SQL statement when duplicating tasks in batches, which could lead to a SQL injection issue

CVSS:
8.8
Affected:
up to 5.0.1.5
Fixed in:
5.0.1.6
Disclosed:
Jan 23, 2022

CVE-2021-24862 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 5.0.1.6

unknown

[en] The RegistrationMagic WordPress plugin before 5.0.1.6 does not escape user input in its rm_chronos_ajax AJAX action before using it in a SQL statement when duplicating tasks in batches, which could lead to a SQL injection issue

Affected:
up to 5.0.1.6
Fixed in:
5.0.1.6
Disclosed:
Jan 10, 2022

CVE-2021-24862 on NVD →

Registration Magic <= 5.0.1.8 - Reflected Cross-Site Scripting

medium

The RegistrationMagic WordPress plugin before 5.0.1.9 does not sanitise and escape the rm_search_value parameter before outputting back in an attribute, leading to a Reflected Cross-Site Scripting

CVSS:
6.1
Affected:
up to 5.0.1.8
Fixed in:
5.0.1.9
Disclosed:
Dec 28, 2021

CVE-2021-24648 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 5.0.1.9

unknown

Reflected Cross-Site Scripting (XSS) vulnerability discovered by WPScanTeam in WordPress RegistrationMagic plugin (versions <= 5.0.1.8).

Affected:
up to 5.0.1.9
Fixed in:
5.0.1.9
Disclosed:
Dec 27, 2021

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 5.0.2.2

unknown

[en] The RegistrationMagic WordPress plugin made it possible for unauthenticated users to log in as any site user, including administrators, if they knew a valid username on the site due to missing identity validation in the social login function social_login_using_email() of the plugin. This affects versions equal to,...

Affected:
up to 5.0.2.2
Fixed in:
5.0.2.2
Disclosed:
Dec 14, 2021

CVE-2021-4073 on NVD →

RegistrationMagic <= 5.0.1.7 - Authentication Bypass

critical

The RegistrationMagic WordPress plugin made it possible for unauthenticated users to log in as any site user, including administrators, if they knew a valid username on the site due to missing identity validation in the social login function social_login_using_email() of the plugin. This affects versions equal to, and...

CVSS:
9.8
Affected:
up to 5.0.1.7
Fixed in:
5.0.1.8
Disclosed:
Dec 8, 2021

CVE-2021-4073 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 4.6.0.3

unknown

[en] An issue was discovered in the RegistrationMagic plugin 4.6.0.0 for WordPress. There is SQL injection via the rm_analytics_show_form rm_form_id parameter.

Affected:
up to 4.6.0.3
Fixed in:
4.6.0.3
Disclosed:
Mar 12, 2020

CVE-2020-8435 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 4.6.0.3

unknown

[en] XSS was discovered in the RegistrationMagic plugin 4.6.0.0 for WordPress via the rm_form_id, rm_tr, or form_name parameter.

Affected:
up to 4.6.0.3
Fixed in:
4.6.0.3
Disclosed:
Mar 12, 2020

CVE-2020-8436 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 4.6.0.4

unknown

[en] A CSRF vulnerability in the RegistrationMagic plugin through 4.6.0.3 for WordPress allows remote attackers to forge requests on behalf of a site administrator to change all settings for the plugin, including deleting users, creating new roles with escalated privileges, and allowing PHP file uploads via forms.

Affected:
up to 4.6.0.4
Fixed in:
4.6.0.4
Disclosed:
Mar 6, 2020

CVE-2020-9454 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 4.6.0.4

unknown

[en] The RegistrationMagic plugin through 4.6.0.3 for WordPress allows remote authenticated users (with minimal privileges) to send arbitrary emails on behalf of the site via class_rm_user_services.php send_email_user_view.

Affected:
up to 4.6.0.4
Fixed in:
4.6.0.4
Disclosed:
Mar 6, 2020

CVE-2020-9455 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 4.6.0.4

unknown

[en] In the RegistrationMagic plugin through 4.6.0.3 for WordPress, the user controller allows remote authenticated users (with minimal privileges) to elevate their privileges to administrator via class_rm_user_controller.php rm_user_edit.

Affected:
up to 4.6.0.4
Fixed in:
4.6.0.4
Disclosed:
Mar 6, 2020

CVE-2020-9456 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 4.6.0.4

unknown

[en] The RegistrationMagic plugin through 4.6.0.3 for WordPress allows remote authenticated users (with minimal privileges) to import custom vulnerable forms and change form settings via class_rm_form_settings_controller.php, resulting in privilege escalation.

Affected:
up to 4.6.0.4
Fixed in:
4.6.0.4
Disclosed:
Mar 6, 2020

CVE-2020-9457 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 4.6.0.4

unknown

[en] In the RegistrationMagic plugin through 4.6.0.3 for WordPress, the export function allows remote authenticated users (with minimal privileges) to export submitted form data and settings via class_rm_form_controller.php rm_form_export.

Affected:
up to 4.6.0.4
Fixed in:
4.6.0.4
Disclosed:
Mar 6, 2020

CVE-2020-9458 on NVD →

RegistrationMagic – Custom Registration Forms and User Login <= 4.6.0.3 - Authenticated Privilege Escalation

critical

In the RegistrationMagic plugin through 4.6.0.3 for WordPress, the user controller allows remote authenticated users (with minimal privileges) to elevate their privileges to administrator via class_rm_user_controller.php rm_user_edit.

CVSS:
9.9
Affected:
up to 4.6.0.4
Fixed in:
4.6.0.4
Disclosed:
Mar 5, 2020

CVE-2020-9456 on NVD →

RegistrationMagic – Custom Registration Forms and User Login <= 4.6.0.3 - Authenticated Settings Import to Privilege Escalation

critical

The RegistrationMagic plugin through 4.6.0.3 for WordPress allows remote authenticated users (with minimal privileges) to import custom vulnerable forms and change form settings via class_rm_form_settings_controller.php, resulting in privilege escalation.

CVSS:
9.9
Affected:
up to 4.6.0.3
Fixed in:
4.6.0.4
Disclosed:
Mar 5, 2020

CVE-2020-9457 on NVD →

RegistrationMagic – Custom Registration Forms and User Login <= 4.6.0.3 - Cross-Site Request Forgery to Settings Modification

high

A CSRF vulnerability in the RegistrationMagic plugin through 4.6.0.3 for WordPress allows remote attackers to forge requests on behalf of a site administrator to change all settings for the plugin, including deleting users, creating new roles with escalated privileges, and allowing PHP file uploads via forms.

CVSS:
8
Affected:
up to 4.6.0.4
Fixed in:
4.6.0.4
Disclosed:
Mar 5, 2020

CVE-2020-9454 on NVD →

RegistrationMagic – Custom Registration Forms and User Login <= 4.6.0.3 - Authenticated Settings and User Data Export

medium

In the RegistrationMagic plugin through 4.6.0.3 for WordPress, the export function allows remote authenticated users (with minimal privileges) to export submitted form data and settings via class_rm_form_controller.php rm_form_export.

CVSS:
4.3
Affected:
up to 4.6.0.4
Fixed in:
4.6.0.4
Disclosed:
Mar 5, 2020

CVE-2020-9458 on NVD →

RegistrationMagic – Custom Registration Forms and User Login <= 4.6.0.3 - Authenticated Email Injection

medium

The RegistrationMagic plugin through 4.6.0.3 for WordPress allows remote authenticated users (with minimal privileges) to send arbitrary emails on behalf of the site via class_rm_user_services.php send_email_user_view.

CVSS:
4.3
Affected:
up to 4.6.0.3
Fixed in:
4.6.0.4
Disclosed:
Mar 5, 2020

CVE-2020-9455 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 4.6.0.4

unknown

Multiple Critical vulnerabilities found by Ram Gall in the WordPress RegistrationMagic plugin (versions <= 4.6.0.3).

Affected:
up to 4.6.0.4
Fixed in:
4.6.0.4
Disclosed:
Mar 5, 2020

RegistrationMagic - Custom Registration Forms, User Registration and User Login Plugin <= 4.6.0.2 - SQL Injection

high

An issue was discovered in the RegistrationMagic plugin 4.6.0.2 for WordPress. There is SQL injection via the rm_analytics_show_form rm_form_id parameter.

CVSS:
8.1
Affected:
up to 4.6.0.3
Fixed in:
4.6.0.3
Disclosed:
Feb 13, 2020

CVE-2020-8435 on NVD →

RegistrationMagic – Custom Registration Forms, User Registration and User Login Plugin <= 4.6.0.1 - Cross-Site Scripting

medium

XSS was discovered in the RegistrationMagic plugin 4.6.0.1 for WordPress via the rm_form_id, rm_tr, or form_name parameter.

CVSS:
6.1
Affected:
up to 4.6.0.1
Fixed in:
4.6.0.3
Disclosed:
Jan 30, 2020

CVE-2020-8436 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 4.6.0.3

unknown

Authenticated SQL Injection (SQLi) vulnerability found by Spider Sec Ltd. in WordPress RegistrationMagic plugin (versions <= 4.6.0.1).

Affected:
up to 4.6.0.3
Fixed in:
4.6.0.3
Disclosed:
Jan 30, 2020

RegistrationMagic - Custom Registration Forms <= 3.8.0.4 - SQL Injection

high

The RegistrationMagic - Custom Registration Forms plugin for WordPress is vulnerable to generic SQL Injection via the 'rm_form_id' field in versions up to, and including, 3.8.0.4 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it poss...

CVSS:
8.8
Affected:
up to 3.8.0.4
Fixed in:
3.8.0.9
Disclosed:
Dec 10, 2017

RegistrationMagic - Custom Registration Forms <= 3.7.9.4 - Reflected Cross-Site Scripting

medium

The RegistrationMagic plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 3.7.9.4 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successf...

CVSS:
6.1
Affected:
up to 3.7.9.2
Fixed in:
3.8.0.9
Disclosed:
Dec 10, 2017

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 3.8.0.9

unknown

The RegistrationMagic plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 3.7.9.4 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successf...

Affected:
up to 3.8.0.9
Fixed in:
3.8.0.9
Disclosed:
Dec 10, 2017

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 3.8.0.9

unknown

The RegistrationMagic - Custom Registration Forms plugin for WordPress is vulnerable to generic SQL Injection via the 'rm_form_id' field in versions up to, and including, 3.8.0.4 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it poss...

Affected:
up to 3.8.0.9
Fixed in:
3.8.0.9
Disclosed:
Dec 10, 2017

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 3.7.9.3

unknown

Unauthenticated PHP Object Injection vulnerability found by Matt Barry (WordFence) in WordPress RegistrationMagic-Custom Registration Forms plugin (versions <= 3.7.9.2).

Affected:
up to 3.7.9.3
Fixed in:
3.7.9.3
Disclosed:
Oct 3, 2017

RegistrationMagic - Custom Registration Forms <= 3.7.9.2 - PHP Object Injection

critical

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to PHP Object Injection in all versions up to 3.7.9.3 (exclusive) via deserialization of untrusted input from the is_expired_by_date() function. This makes it possible for unauthenticated att...

CVSS:
9.8
Affected:
up to 3.7.9.3
Fixed in:
3.7.9.3
Disclosed:
Oct 2, 2017

CVE-2017-20208 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 3.7.9.3

unknown

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to PHP Object Injection in all versions up to 3.7.9.3 (exclusive) via deserialization of untrusted input from the is_expired_by_date() function. This makes it possible for unauthenticated att...

Affected:
up to 3.7.9.3
Fixed in:
3.7.9.3
Disclosed:
Oct 2, 2017

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 5.0.1.9

unknown

The plugin does not properly sanitise and escape an arbitrary GET parameter before outputting back in an attribute when generating the Log pagination, leading to a Reflected Cross-Site Scripting

Affected:
up to 5.0.1.9
Fixed in:
5.0.1.9

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 3.8.0.9

unknown

The RegistrationMagic &ndash; Custom Registration Forms and User Login WordPress plugin was affected by a Custom Registration Forms &lt;= 3.8.0.4 - Authenticated Reflected XSS security vulnerability.

Affected:
up to 3.8.0.9
Fixed in:
3.8.0.9

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 3.8.0.9

unknown

The RegistrationMagic &ndash; Custom Registration Forms and User Login WordPress plugin was affected by a Custom Registration Forms &lt;= 3.8.0.4 - Authenticated SQL Injection security vulnerability.

Affected:
up to 3.8.0.9
Fixed in:
3.8.0.9

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 3.7.9.3

unknown
Affected:
up to 3.7.9.3
Fixed in:
3.7.9.3

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 6.0.4.4

unknown
Affected:
up to 6.0.4.4
Fixed in:
6.0.4.4

CVE-2025-2836 on NVD →

RegistrationMagic &#8211; Custom Registration Forms, User Registration, Payment, and User Login [custom-registration-form-builder-with-submission-manager] < 6.0.2.1

unknown
Affected:
up to 6.0.2.1
Fixed in:
6.0.2.1

CVE-2024-9390 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database