PT-2022-21726 · WordPress · Wpdevelop/Oplugins Booking Calendar

Muhammad Daffa

·

Published

2022-09-06

·

Updated

2022-09-09

·

CVE-2022-33177

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions WPdevelop/Oplugins Booking Calendar plugin versions prior to 9.2.1
Description A Cross-Site Request Forgery (CSRF) issue exists, allowing unauthorized actions related to Translations Update.
Recommendations For WPdevelop/Oplugins Booking Calendar plugin versions prior to 9.2.1, update to version 9.2.1 or later to resolve the issue.

Fix

CSRF

Weakness Enumeration

Related Identifiers

CVE-2022-33177

Affected Products

Wpdevelop/Oplugins Booking Calendar