Vulnerabilities (CVE)

Filtered by vendor Call\&book Mobile Bar Project Subscribe
Filtered by product Call\&book Mobile Bar
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-1644 1 Call\&book Mobile Bar Project 1 Call\&book Mobile Bar 2024-02-28 3.5 LOW 4.8 MEDIUM
The Call&Book Mobile Bar WordPress plugin through 1.2.2 does not sanitize and escape some of its settings, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed.