Ravster maintains a narrowly scoped e-commerce product portfolio centered on its Inquiry Cart application, which handles customer request submission and workflow. The durable signal from its disclosed vulnerabilities centers on cross-site request forgery issues affecting this user-facing component, a weakness class common to web applications that rely on stateless session handling. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ravster over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-5155MEDIUM The Inquiry cart WordPress plugin through 3.4.2 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged | Jun 14, 2024 | 6.1 | 18 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ravster.
Media articles that mention a CVE ID that affects a product developed by Ravster — matched by CVE ID, not by vendor name.