Booking Calendar Contact Form
by Codepeople
CVEs (3)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2016-10909 | Cri | 0.64 | 9.8 | 0.02 | Aug 21, 2019 | The booking-calendar-contact-form plugin before 1.0.24 for WordPress has SQL injection. | ||
| CVE-2023-36384 | Hig | 0.46 | 7.1 | 0.00 | Jul 18, 2023 | Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in CodePeople Booking Calendar Contact Form plugin <= 1.2.40 versions. | ||
| CVE-2016-10908 | Med | 0.40 | 6.1 | 0.01 | Aug 21, 2019 | The booking-calendar-contact-form plugin before 1.0.24 for WordPress has XSS. |
- risk 0.64cvss 9.8epss 0.02
The booking-calendar-contact-form plugin before 1.0.24 for WordPress has SQL injection.
- risk 0.46cvss 7.1epss 0.00
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in CodePeople Booking Calendar Contact Form plugin <= 1.2.40 versions.
- risk 0.40cvss 6.1epss 0.01
The booking-calendar-contact-form plugin before 1.0.24 for WordPress has XSS.