CVE-2023-1977 — The Booking Manager WordPress plugin before 2.0.29 does not validate URLs input in it's admin panel or in shortcodes for showing events from a remote .ics file, allowing an attacker with privilege — CVE Database · The Intelligence Room