Vulnerabilities (CVE)

Filtered by vendor Wpbookingsystem Subscribe
Filtered by product Wp Booking System
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-12239 1 Wpbookingsystem 1 Wp Booking System 2020-08-24 6.5 MEDIUM 7.2 HIGH
The WP Booking System plugin 1.5.1 for WordPress has no CSRF protection, which allows attackers to reach certain SQL injection issues that require administrative access.