- Lana Codes
- Common Vulnerabilities
Appointment Hour Booking Plugin by CodePeople <= 1.3.71 - CSRF
LANACOMMONVDB ID: 65535a4e-f0a7-48bf-a890-22063631b277
The plugin does not have Cross-Site Request Forgery (CSRF) check when submitting feedback, which could allow attackers to make logged in users do such action on their behalf via a Cross-Site Request Forgery (CSRF) attack.
You must be log in to view vulnerability details.
Or register a new account.