MEDIUM
Motopress
CVE published 2026-05-10
CVE-2022-50948
CVE-2022-50948 is a stored cross-site scripting issue reported for Motopress Hotel Booking Lite 4.2.4. According to the source corpus, an authenticated attacker can place malicious content into accommodation type title and excerpt fields, and the injected script runs when visitors load the accommodations page. The CVE and NVD entries classify it as medium severity, and no KEV listing was provided.