CVE-2023-34537: Digitaldruid Hoteldruid
Medium severity, CVSS 5.4. EPSS: 1.4% chance of exploitation in the next 30 days.
A Reflected XSS was discovered in HotelDruid version 3.0.5, an attacker can issue malicious code/command on affected webpage's parameter to trick user on browser and/or exfiltrate data.
Affected products
- Digitaldruid Hoteldruid: version 3.0.5 only
Published 2023-06-13. Last modified 2026-06-17.