Pricelisto develops restaurant menu and pricing management products, with its vulnerability profile centered on web-application input-handling issues such as cross-site request forgery and SQL injection across its Best Restaurant Menu and Great Restaurant Menu WordPress offerings. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Pricelisto over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-38793HIGH Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in PriceListo Best Restaurant Menu by PriceListo allows SQL Injection.This issue | Aug 29, 2024 | 8.8 | 25 | NO | NO |
CVE-2023-47649HIGH Cross-Site Request Forgery (CSRF) vulnerability in PriceListo Best Restaurant Menu by PriceListo.This issue affects Best Restaurant Menu by PriceListo: from n/a through 1.3.1. | Nov 18, 2023 | 8.8 | 24 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Pricelisto.
Media articles that mention a CVE ID that affects a product developed by Pricelisto — matched by CVE ID, not by vendor name.