Vulnerabilities > Twinkletoessoftware > Booked > 2.5.5

DATE CVE VULNERABILITY TITLE RISK
2023-01-22 CVE-2023-24058 Unspecified vulnerability in Twinkletoessoftware Booked 2.5.5
Booked Scheduler 2.5.5 allows authenticated users to create and schedule events for any other user via a modified userId value to reservation_save.php.
network
low complexity
twinkletoessoftware
4.3