Persistent XSS Vulnerability in CityBook, TownHub, and EasyBook WordPress Themes
CVE-2019-20211
6.1MEDIUM
What is CVE-2019-20211?
The CTHthemes CityBook, TownHub, and EasyBook WordPress themes are susceptible to a Persistent XSS vulnerability. This flaw allows attackers to inject malicious scripts through various fields, including Listing Address, Latitude, Longitude, Email Address, as well as other descriptive fields. If exploited, this vulnerability can lead to unauthorized access and data breaches, posing substantial risks to website users and the integrity of the applications.