cleantalk
Vulnerabilities and Security Researches

WP Booking Calendar, fc4908180385f60ce8ac90a68c6145a8adb4c4ca

Application

WP Booking Calendar

Published on
Aug 01, 2023
Research Description
Booking Calendar [booking] < 6.2.1 WordPress Booking Calendar Plugin <= 6.2 is vulnerable to Cross Site Scripting (XSS) Update the plugin. An unknown person discovered and reported this Cross Site Scripting (XSS) vulnerability in WordPress Booking Calendar Plugin. This could allow a malicious actor to inject malicious scripts, such as redirects, advertisements, and other HTML payloads into your website which will be executed when guests visit your site. This vulnerability has been fixed in version 6.2.1.
Affected versions
max 6.2.1.
Status
vulnerable