Medium severity5.4NVD Advisory· Published Sep 30, 2022· Updated Jun 17, 2026
CVE-2021-36854
CVE-2021-36854
Description
Multiple Cross-Site Request Forgery (CSRF) vulnerabilities in Booking Ultra Pro plugin <= 1.1.4 at WordPress.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:bookingultrapro:booking_ultra_pro_appointments_booking_calendar:*:*:*:*:*:wordpress:*:*Range: <=1.1.4
- Range: <=1.1.4
- Booking Ultra Pro/Booking Ultra Pro (WordPress plugin)v5Range: <= 1.1.4
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.