CommonsBooking < 2.6.8 - Unauthenticated SQL Injection
criticalThe CommonsBooking WordPress plugin before 2.6.8 does not sanitise and escape the location parameter of the calendar_data AJAX action (available to unauthenticated users) before it is used in dynamically constructed SQL queries, leading to an unauthenticated SQL injection
- CVSS:
- 9.8
- Affected:
- up to 2.6.8
- Fixed in:
- 2.6.8
- Disclosed:
- Feb 21, 2022