Medium severity6.1NVD Advisory· Published Dec 5, 2022· Updated Jun 17, 2026
CVE-2022-43487
CVE-2022-43487
Description
Cross-site scripting vulnerability in Salon booking system versions prior to 7.9 allows a remote unauthenticated attacker to inject an arbitrary script.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:salonbookingsystem:salon_booking_system:*:*:*:*:*:wordpress:*:*+ 1 more
- cpe:2.3:a:salonbookingsystem:salon_booking_system:*:*:*:*:*:wordpress:*:*range: <7.9
- (no CPE)range: <7.9
- Range: <7.9
- Salon Booking System/Salon booking systemv5Range: versions prior to 7.9
Patches
Vulnerability mechanics
References
3- jvn.jp/en/jp/JVN59663854/index.htmlnvdThird Party Advisory
- www.salonbookingsystem.comnvdProductVendor Advisory
- wordpress.org/plugins/salon-booking-system/nvdProduct
News mentions
0No linked articles in our index yet.