CVE-2025-23955

Published Jan 16, 2025

Last updated a day ago

Overview

Description
Missing Authorization vulnerability in xola Xola xola-bookings-for-tours-activities allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Xola: from n/a through <= 1.6.
Source
audit@patchstack.com
NVD status
Deferred

Weaknesses

audit@patchstack.com
CWE-862

Social media

Hype score
Not currently trending