CVE-2014-4547
Rezgo Online Booking <1.8.2 - XSS
Title source: llmDescription
Multiple cross-site scripting (XSS) vulnerabilities in templates/default/index_ajax.php in the Rezgo Online Booking plugin before 1.8.2 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) tags or (2) search_for parameter.
References (2)
Scores
EPSS
0.0017
EPSS Percentile
38.7%
Details
CWE
CWE-79
Status
published
Products (2)
rezgo/online_booking
< 1.8
n/a/n/a
Published
Jul 02, 2014
Tracked Since
Feb 18, 2026