← back
CVE-2023-34537

CVE-2023-34537

18Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 1.5%
exploitation probability
1.5%top 30% of all CVEs
observed exploitation
nono source reports it
A Reflected XSS was discovered in HotelDruid version 3.0.5, an attacker can issue malicious code/command on affected webpage's parameter to trick user on browser and/or exfiltrate data.
Affected products
n/a · n/a