Security Advisory

CVE-2021-37333

9.8
CRITICAL

Vulnerability Description

Laravel Booking System Booking Core 2.0 is vulnerable to Session Management. A password change at sandbox.bookingcore.org/user/profile/change-password does not invalidate a session that is opened in a different browser.
Published Date October 4, 2021
Official Source NIST NVD Advisory