A reflected cross-site scripting (XSS) vulnerability exists in multiple pages in version 3.0.2 of the Hotel Druid application that allows for arbitrary execution of JavaScript commands.
{ "binaries": [ { "binary_version": "2.1.4-1ubuntu2", "binary_name": "hoteldruid" } ] }
{ "binaries": [ { "binary_version": "2.2.2-1", "binary_name": "hoteldruid" } ] }
{ "binaries": [ { "binary_version": "3.0.1-1", "binary_name": "hoteldruid" } ] }
{ "binaries": [ { "binary_version": "3.0.3-1", "binary_name": "hoteldruid" } ] }
{ "binaries": [ { "binary_version": "3.0.6-1", "binary_name": "hoteldruid" } ] }