- Lana Codes
- Common Vulnerabilities
Booking Calendar Contact Form by CodePeople <= 1.2.34 - CSRF
LANACOMMONVDB ID: 333b7851-9da1-4463-850e-552a92623e64
The plugin does not have Cross-Site Request Forgery (CSRF) check when submitting feedback, which could allow attackers to make logged in users do such action on their behalf via a Cross-Site Request Forgery (CSRF) attack.
You must be log in to view vulnerability details.
Or register a new account.