Vulnerabilities (CVE)

Filtered by vendor Codepeople Subscribe
Filtered by product Booking Calendar Contact Form
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2016-10909 1 Codepeople 1 Booking Calendar Contact Form 2024-02-04 7.5 HIGH 9.8 CRITICAL
The booking-calendar-contact-form plugin before 1.0.24 for WordPress has SQL injection.
CVE-2016-10908 1 Codepeople 1 Booking Calendar Contact Form 2024-02-04 4.3 MEDIUM 6.1 MEDIUM
The booking-calendar-contact-form plugin before 1.0.24 for WordPress has XSS.