Vulnerabilities > Salonbookingsystem > Salon Booking System > 7.6.4

DATE CVE VULNERABILITY TITLE RISK
2023-06-28 CVE-2023-3427 Unspecified vulnerability in Salonbookingsystem Salon Booking System
The Salon Booking System plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 8.4.6.
network
low complexity
salonbookingsystem
4.3
2022-12-05 CVE-2022-43487 Cross-site Scripting vulnerability in Salonbookingsystem Salon Booking System
Cross-site scripting vulnerability in Salon booking system versions prior to 7.9 allows a remote unauthenticated attacker to inject an arbitrary script.
network
low complexity
salonbookingsystem CWE-79
6.1