Vulnerabilities (CVE)

Filtered by vendor Vikwp Subscribe
Filtered by product Vik Booking
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-1528 1 Vikwp 1 Vik Booking 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The VikBooking Hotel Booking Engine & PMS WordPress plugin before 1.5.9 does not escape the current URL before putting it back in a JavaScript context, leading to a Reflected Cross-Site Scripting