plugin

Row Seats Vulnerabilities

1 known security issue reported for the Row Seats WordPress plugin. Most recent disclosed Feb 14, 2017.

1 high

Running Row Seats on your site? Check whether your installed version is affected.

Scan your site free

Row Seats Core < 2.68 - PHP Object Injection

high

The Row Seats Core plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 2.66 via deserialization of untrusted input from several parameters such as 'mycartitems'. This allows attackers to inject a PHP Object. No POP chain is present in the vulnerable plugin. If a POP chain is pre...

CVSS:
7.2
Affected:
up to 2.68
Fixed in:
2.68
Disclosed:
Feb 14, 2017

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database