The EventPrime WordPress plugin prior to 3.2.0 does not have CSRF checks when creating bookings, which could allow malicious users to make logged in users create unwanted bookings via CSRF attacks.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
metagauss eventprime |