CVE-2023-51299: Phpjabbers Hotel Booking System

Medium severity, CVSS 6.1. EPSS: 0.4% chance of exploitation in the next 30 days.

PHPJabbers Hotel Booking System v4.0 is vulnerable to HTML Injection in the "name, plugin_sms_api_key, plugin_sms_country_code, title, plugin_sms_api_key, title" parameters.

Affected products

Published 2025-02-19. Last modified 2026-06-17.