CyberRota Analysis
AI analysis pending.
CVE
CVE-2023-1129
Severity
MEDIUM
CVSS
6.5
EPSS
0.56%
WordPress
Original NVD Description
The WP FEvents Book WordPress plugin through 0.46 does not ensures that bookings to be updated belong to the user making the request, allowing any authenticated user to book, add notes, or cancel booking on behalf of other users.
Related CVEs
Other vulnerabilities affecting the same vendor(s)