Unrated severityNVD Advisory· Published May 10, 2023· Updated Jan 27, 2025
CVE-2023-27918
CVE-2023-27918
Description
Cross-site scripting vulnerability in Appointment and Event Booking Calendar for WordPress - Amelia versions prior to 1.0.76 allows a remote unauthenticated attacker to inject an arbitrary script by having a user who is logging in the WordPress where the product is installed visit a malicious URL.
Affected products
1- Range: versions prior to 1.0.76
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2News mentions
0No linked articles in our index yet.