Vulnerabilities (CVE)

Filtered by vendor Phpjabbers Subscribe
Filtered by product Availability Booking Calendar
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-48207 1 Phpjabbers 1 Availability Booking Calendar 2023-12-11 N/A 8.8 HIGH
Availability Booking Calendar 5.0 allows CSV injection via the unique ID field in the Reservations list component.
CVE-2023-48831 1 Phpjabbers 1 Availability Booking Calendar 2023-12-09 N/A 7.5 HIGH
A lack of rate limiting in pjActionAJaxSend in Availability Booking Calendar 5.0 allows attackers to cause resource exhaustion.