Description
An issue was discovered in the booking-calendar plugin 2.1.7 for WordPress. CSRF exists via wp-admin/admin.php.
Remediation
References
https://github.com/d4wner/Vulnerabilities-Report/blob/master/booking-calendar.md
https://wpvulndb.com/vulnerabilities/9012
Related Vulnerabilities
CVE-2020-11022 Vulnerability in maven package org.webjars.bowergithub.jquery:jquery
CVE-2018-3739 Vulnerability in npm package https-proxy-agent
CVE-2021-23425 Vulnerability in npm package trim-off-newlines
CVE-2018-16474 Vulnerability in npm package tianma-static
CVE-2020-12642 Vulnerability in maven package com.epam.reportportal:service-api