Vulnerabilities > Wpbookingsystem > WP Booking System > 2.0.14
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-09-14 | CVE-2024-8797 | Cross-site Scripting vulnerability in Wpbookingsystem WP Booking System The WP Booking System – Booking Calendar plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg & remove_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.0.19.8. | 6.1 |
2023-04-07 | CVE-2023-24402 | Unspecified vulnerability in Wpbookingsystem WP Booking System Auth. | 4.8 |
2022-01-17 | CVE-2021-25061 | Unspecified vulnerability in Wpbookingsystem WP Booking System The WP Booking System WordPress plugin before 2.0.15 was affected by a reflected xss in wp-booking-system on the wpbs-calendars admin page. | 5.4 |