Genetechsolutions maintains a narrowly scoped product portfolio centered on the PIE Register application, which despite its limited footprint carries a notably elevated risk profile, skewing toward critical-severity outcomes and frequently acquiring public exploit tooling. The vendor's vulnerabilities cluster around application-layer input-handling and authentication weaknesses—cross-site scripting, SQL injection, cross-site request forgery, improper authentication, and sensitive information disclosure in logs—reflecting the security challenges inherent to web-facing administrative and data-management platforms. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Genetechsolutions over time
Signals from CVEs in this vendor scope (14 CVEs).
14 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-10969CRITICAL SQL injection vulnerability in the Pie Register plugin before 3.0.10 for WordPress allows remote attackers to execute arbitrary SQL commands via the invitation codes grid. | Jun 17, 2018 | 9.8 | 44 | NO | YES |
CVE-2021-24731CRITICAL The Registration Forms – User profile, Content Restriction, Spam Protection, Payment Gateways, Invitation Codes WordPress plugin before 3.7.1.6 does not properly escape user data b | Nov 8, 2021 | 9.8 | 43 | NO | YES |
CVE-2023-0552MEDIUM The Registration Forms WordPress plugin before 3.8.2.3 does not properly validate the redirection URL when logging in and login out, leading to an Open Redirect vulnerability | Feb 27, 2023 | 5.4 | 40 | NO | YES |
CVE-2021-24647HIGH The Registration Forms – User profile, Content Restriction, Spam Protection, Payment Gateways, Invitation Codes WordPress plugin before 3.1.7.6 has a flaw in the social login imple | Nov 8, 2021 | 8.1 | 40 | NO | YES |
CVE-2019-15659CRITICAL The pie-register plugin before 3.1.2 for WordPress has SQL injection, a different issue than CVE-2018-10969. | Aug 27, 2019 | 9.8 | 31 | NO | NO |
CVE-2021-24239MEDIUM The Pie Register – User Registration Forms. Invitation based registrations, Custom Login, Payments WordPress plugin before 3.7.0.1 does not sanitise the invitaion_code GET paramete | Apr 22, 2021 | 6.1 | 29 | NO | YES |
CVE-2015-7377MEDIUM Cross-site scripting (XSS) vulnerability in pie-register/pie-register.php in the Pie Register plugin before 2.0.19 for WordPress allows remote attackers to inject arbitrary web scr | Oct 16, 2015 | 4.3 | 29 | NO | YES |
CVE-2024-27957CRITICAL Unrestricted Upload of File with Dangerous Type vulnerability in Pie Register.This issue affects Pie Register: from n/a through 3.8.3.1. | Mar 17, 2024 | 9.8 | 27 | NO | NO |
CVE-2014-8802MEDIUM The Pie Register plugin before 2.0.14 for WordPress does not properly restrict access to certain functions in pie-register.php, which allows remote attackers to (1) add a user by u | Jan 23, 2015 | 5.0 | 25 | NO | YES |
CVE-2022-4024MEDIUM The Registration Forms WordPress plugin before 3.8.1.3 does not have authorisation and CSRF when deleting users via an init action handler, allowing unauthenticated attackers to de | Dec 19, 2022 | 6.5 | 23 | NO | NO |
Signals from CVEs in this vendor scope (14 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Genetechsolutions.
Media articles that mention a CVE ID that affects a product developed by Genetechsolutions — matched by CVE ID, not by vendor name.