CVE-2024-10893 | WP Booking Calendar Plugin up to 10.6.4 on WordPress Setting cross site scripting (fda-4145-810)
A vulnerability, which was classified as problematic, was found in WP Booking Calendar Plugin up to 10.6.4 on WordPress. This affects an unknown part of the component Setting Handler. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2024-10893. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.