Lucene search

K
patchstackKrzysztof ZającPATCHSTACK:FA8E525FE14D0C685BCAED6969FDDE61
HistoryOct 31, 2022 - 12:00 a.m.

WordPress Five Star Restaurant Reservations plugin <= 2.4.11 - Unauth. Arbitrary Payment Status Update leading to Stored Cross-Site Scripting (XSS) vulnerability

2022-10-3100:00:00
Krzysztof Zając
patchstack.com
10
wordpress
five star
restaurant
reservations
plugin
unauthenticated
arbitrary
payment
status
update
stored
cross-site scripting
xss
vulnerability
krzysztof zając
update
solution

0.001 Low

EPSS

Percentile

40.2%

Unauth. Arbitrary Payment Status Update leading to Stored Cross-Site Scripting (XSS) vulnerability discovered by Krzysztof Zając in WordPress Five Star Restaurant Reservations plugin (versions <= 2.4.11).

Solution

           Update the WordPress Five Star Restaurant Reservations plugin to the latest available version (at least 2.4.12).

0.001 Low

EPSS

Percentile

40.2%

Related for PATCHSTACK:FA8E525FE14D0C685BCAED6969FDDE61