CVE-2024-12462 | andersyogo YOGO Booking Plugin up to 1.6.2 on WordPress Shortcode yogo-calendar cross site scripting
A vulnerability classified as problematic has been found in andersyogo YOGO Booking Plugin up to 1.6.2 on WordPress. This affects the function yogo-calendar of the component Shortcode Handler. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2024-12462. It is possible to initiate the attack remotely. There is no exploit available.