Skip to content
Noroxi

GoodLayers records

7 published records for vendor goodlayers.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
71.4%
Median publish → KEV
No record has entered KEV

Records by year

  1. 20
  2. 25

Bar: total · dark part: CISA KEV.

All records

7 records
  • An unauthenticated SQL Injection vulnerability in Good Layers LMS Plugin <= 2.1.4 exists due to the usage of "wp_ajax_nopriv" call in WordPr

    CriticalCVSS 9.8Proof of conceptEPSS 10%

    goodlayers · good learning management systemNov 12, 2020

  • Tour Master - Tour Booking, Travel, Hotel <= 5.3.7 - Authenticated (Subscriber+) SQL Injection via review_id Parameter

    HighCVSS 8.8No exploitEPSS 0%

    goodlayers · tour masterFeb 18, 2025

  • Tourmaster < 5.3.5 - Reflected XSS

    HighCVSS 7.1No exploitEPSS 0%

    goodlayers · tour masterJan 30, 2025

  • GoodLayers Core < 2.1.3 - Subscriber+ Stored XSS via SVG Upload

    MediumCVSS 6.5No exploitEPSS 0%

    goodlayers · goodlayers coreJan 30, 2025

  • Travel Tour < 5.2.4 - Reflected XSS

    MediumCVSS 6.1No exploitEPSS 0%

    goodlayers · travel tourJan 1, 2025

  • Tourmaster < 5.3.4 - Unauthenticated Stored XSS via Room Booking

    MediumCVSS 6.1No exploitEPSS 0%

    goodlayers · tour masterJan 6, 2025

  • Goodlayers Core < 2.0.10 - Contributor+ Stored XSS

    MediumCVSS 5.9No exploitEPSS 0%

    goodlayers · goodlayers coreJan 2, 2025