Cross-Site Request Forgery (CSRF) vulnerability in CultBooking CultBooking Hotel Booking Engine allows Stored XSS.This issue affects CultBooking Hotel Booking Engine: from n/a through 2.1.CreditsSOPROBRO (Patchstack Alliance)Referenceshttps://patchstack.com/database/wordpress/plugin/cultbooking-booking-engine/vulnerability/wordpress-cultbooking-hotel-booking-engine-plugin-2-1-csrf-to-stored-xss-vulnerability?_s_id=cve