CVE-2021-24930
The WordPress Online Booking and Scheduling Plugin WordPress plugin before 20.3.1 does not escape the Staff Full Name field before outputting it back in a page, which could lead to a Stored Cross-Site Scripting issue
Date published : 2021-12-06
https://wpscan.com/vulnerability/479704d8-057b-4642-b84a-4a78567ba20b
