Realwebcare maintains a small portfolio of web-based applications, including the Muslim Prayer Time BD and WRC Pricing Tables products, with a durable vulnerability signal centered on client-side security issues such as cross-site request forgery and cross-site scripting. These are input-handling and output-encoding weaknesses typical of web applications where user input or attacker-controlled data reaches the browser without proper sanitization or token validation. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Realwebcare over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-4758HIGH The Muslim Prayer Time BD WordPress plugin through 2.4 does not have CSRF check in place when reseting its settings, which could allow attackers to make a logged in admin reset the | Jun 26, 2024 | 7.6 | 21 | NO | NO |
CVE-2023-38517MEDIUM Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Realwebcare WRC Pricing Tables plugin <= 2.3.7 versions. | Sep 3, 2023 | 4.8 | 17 | NO | NO |
CVE-2023-32293MEDIUM Missing Authorization vulnerability in Realwebcare WRC Pricing Tables allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WRC Pricing Tables: | Dec 9, 2024 | 5.3 | 15 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Realwebcare.
Media articles that mention a CVE ID that affects a product developed by Realwebcare — matched by CVE ID, not by vendor name.