CVE-2021-25061

CVE-2021-25061: WP Booking System – Booking Calendar < 2.0.15 - Authenticated Reflected Cross-Site Scripting (XSS)

Vendor Unknown
Product WP Booking System – Booking Calendar
Weakness CWE-79 · XSS
Published January 17, 2022
Last update August 3, 2024

CVSS base score

What the vulnerability does

01Description

The WP Booking System WordPress plugin before 2.0.15 was affected by a reflected xss in wp-booking-system on the wpbs-calendars admin page.

Key dates

02Disclosure timeline

January 17, 2022 CVE published
August 3, 2024 Record updated