PT-2024-26421 · Unknown · Wp Booking

Daiki Sato

·

Published

2024-05-27

·

Updated

2024-11-08

·

CVE-2024-35297

CVSS v3.1

4.7

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions WP Booking versions prior to 2.4.5
Description A cross-site scripting issue exists, allowing an arbitrary script to be executed on the user's web browser if exploited.
Recommendations For versions prior to 2.4.5, update to version 2.4.5 or later to resolve the issue.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2024-35297

Affected Products

Wp Booking