Filtered by vendor Rafflepress Subscriptions
Filtered by product Rafflepress Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-3963 1 Rafflepress 1 Rafflepress 2025-06-09 6.5 Medium
The Giveaways and Contests by RafflePress WordPress plugin before 1.12.14 does not sanitise and escape some parameters, which could allow users with a role as low as editor to perform Cross-Site Scripting attacks