Vulnerabilities > Classroombookings > Classroombookings > 2.6.4

DATE CVE VULNERABILITY TITLE RISK
2023-01-20 CVE-2023-23012 Cross-site Scripting vulnerability in Classroombookings 2.6.4
Cross Site Scripting (XSS) vulnerability in craigrodway classroombookings 2.6.4 allows attackers to execute arbitrary code or other unspecified impacts via the input bgcol in file Weeks.php.
network
low complexity
classroombookings CWE-79
6.1