Lucene search

K
wpvulndbWpvulndbWPVDB-ID:344DAD74-BE47-4E3E-8FAD-E6986A000B47
HistoryMay 24, 2023 - 12:00 a.m.

Booking Ultra Pro < 1.1.7 - Cross-Site Request Forgery

2023-05-2400:00:00
wpscan.com
10
cross-site request forgery
csrf
vulnerability
plugin
booking ultra pro
software

EPSS

0.001

Percentile

27.6%

The plugin does not have CSRF checks in some places, which could allow attackers to make logged-in users perform unwanted actions via CSRF attacks. The original researcher didn’t provide enough information on which actions could be performed.

EPSS

0.001

Percentile

27.6%

Related for WPVDB-ID:344DAD74-BE47-4E3E-8FAD-E6986A000B47