Medium severity6.1NVD Advisory· Published Jul 5, 2019· Updated Jun 17, 2026
CVE-2019-5972
CVE-2019-5972
Description
Cross-site scripting vulnerability in Online Lesson Booking 0.8.6 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:sukimalab:online_lesson_booking:*:*:*:*:*:wordpress:*:*Range: <=0.8.6
- Range: <=0.8.6
- SUKIMALAB.COM/Online Lesson Bookingv5Range: 0.8.6 and earlier
Patches
Vulnerability mechanics
References
4- jvn.jp/en/jp/JVN96988995/index.htmlnvdThird Party Advisory
- olbsys.com/fixed-vulnerability-issue/nvdVendor Advisory
- wordpress.org/plugins/online-lesson-booking-system/nvdProductRelease NotesThird Party Advisory
- wpvulndb.com/vulnerabilities/9435nvdThird Party Advisory
News mentions
0No linked articles in our index yet.