- Lana Codes
- Common Vulnerabilities
Appointment Booking Calendar by CodePeople <= 1.3.69 - CSRF
LANACOMMONVDB ID: a3d7be6b-43c3-4af7-b21e-47c811766892
The plugin does not have Cross-Site Request Forgery (CSRF) check when submitting feedback, which could allow attackers to make logged in users do such action on their behalf via a Cross-Site Request Forgery (CSRF) attack.
You must be log in to view vulnerability details.
Or register a new account.