Pricing
Case studies
Login
Start trial
RegistrationMagic
Metagauss
Developer
6.0.8.2
Latest version
9,000
Installations
No date
Last updated
WordPress Plugin
No VDP
See changelog
Claim ownership
Report vulnerability
Vulnerabilities
Security Contributors
Vulnerability history
0 present
41 patched
19 Mitigation rules
Broken Access Control vulnerability
<= 6.0.7.6
20/03/2026
Account Takeover vulnerability
<= 6.0.7.1
12/03/2026
Subscriber+ Sensitive Data Disclosure vulnerability
<= 6.0.7.2
12/03/2026
Broken Access Control vulnerability
<= 6.0.7.6
18/02/2026
WordPress RegistrationMagic - Custom Registration Forms, User Registration, Payment, and User Login plugin <= 6.0.6.9 - Unauthenticated Payment Bypass via rm_process_paypal_sdk_payment vulnerability
<= 6.0.6.9
18/02/2026
Subscriber+ Form Creation vulnerability
< 6.0.7.2
16/02/2026
Missing Authorization to Unauthenticated Arbitrary Settings Modification vulnerability
<= 6.0.7.4
28/01/2026
Privilege Escalation via admin_order vulnerability
<= 6.0.7.1
19/01/2026
Cross Site Request Forgery (CSRF) vulnerability
<= 6.0.6.9
10/01/2026
Authenticated (Contributor+) Stored Cross-Site Scripting via 'RM_Forms' Shortcode vulnerability
<= 6.0.6.7
15/12/2025
Authenticated (Administrator+) SQL Injection vulnerability
<= 6.0.6.2
07/10/2025
Stored XSS vulnerability
< 6.0.2.1
19/05/2025
Authenticated (Subscriber+) Stored Cross-Site Scripting vulnerability
<= 6.0.4.3
03/04/2025
Reflected Cross Site Scripting (XSS) vulnerability
<= 6.0.3.3
28/01/2025
Unauthenticated Privilege Escalation via Password Recovery vulnerability
<= 6.0.2.6
26/11/2024
Cross Site Scripting (XSS) vulnerability
<= 6.0.1.0
16/08/2024
Cross Site Scripting (XSS) vulnerability
<= 6.0.0.1
01/08/2024
Cross Site Scripting (XSS) vulnerability
<= 5.3.2.0
30/04/2024
Auth. SQL Injection (SQLi) vulnerability
<= 5.3.1.0
26/03/2024
Cross Site Request Forgery (CSRF) vulnerability
<= 5.3.0.0
26/03/2024
Reflected Cross Site Scripting (XSS) vulnerability
<= 5.2.5.9
16/03/2024
Authenticated (Subscriber+) Privilege Escalation vulnerability
<= 5.3.0.0
14/03/2024
Broken Access Control vulnerability
<= 5.2.5.9
21/02/2024
Form Submission Limit Bypass vulnerability
<= 5.2.5.0
27/12/2023
IP Limit Bypass vulnerability
<= 5.2.5.0
27/12/2023
Reflected Cross Site Scripting (XSS) vulnerability
<= 5.2.4.1
27/12/2023
SQL Injection vulnerability
<= 5.2.4.5
21/12/2023
Broken Access Control vulnerability
<= 5.2.3.0
05/12/2023
Delete Form Submission Cross Site Request Forgery (CSRF) vulnerability
<= 5.2.2.6
27/11/2023
Authentication Bypass vulnerability
<= 5.2.1.0
16/05/2023
Multiple Cross Site Request Forgery (CSRF)
<= 5.1.9.2
17/02/2023
Arbitrary Price Change
<= 5.1.9.2
20/01/2023
Content Injection
<= 5.1.9.2
20/01/2023
Reflected Cross-Site Scripting (XSS) vulnerability
<= 5.0.1.8
28/12/2021
Reflected Cross-Site Scripting (XSS) vulnerability
<= 5.0.1.8
27/12/2021
Authentication Bypass vulnerability
<= 5.0.1.7
08/12/2021
SQL Injection (SQLi) vulnerability
<= 5.0.1.5
08/12/2021
Multiple Critical vulnerabilities
<= 4.6.0.3
05/03/2020
Multiple Cross-Site Scripting (XSS) vulnerabilities
<= 4.6.0.1
30/01/2020
Authenticated SQL Injection (SQLi) vulnerability
<= 4.6.0.1
30/01/2020
Unauthenticated PHP Object Injection vulnerability
<= 3.7.9.2
03/10/2017