https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2023-4691
Source: CVEAnnouncements
Source Link: https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2023-4691
The WordPress Online Booking and Scheduling Plugin WordPress plugin before 22.4 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by high privilege users such as admin https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2023-4691 Source: CVEAnnouncements Source Link: https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2023-4691
|
|