📦 Booking Calendar

by Wpbookingcalendar

🔍 What is Booking Calendar?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-1207

CRITICAL CVSS 9.8 Feb 8, 2024

This SQL injection vulnerability in the WP Booking Calendar WordPress plugin allows unauthenticated attackers to inject malicious SQL queries through the 'calendar_request_params[dates_ddmmyy_csv]' pa...

CVE-2024-13821

MEDIUM CVSS 5.3 Feb 12, 2025

The WP Booking Calendar plugin for WordPress has a vulnerability that allows unauthenticated attackers to modify confirmed bookings after they've been approved. This occurs because the plugin doesn't ...

CVE-2024-6930

MEDIUM CVSS 6.4 Jul 24, 2024

The WP Booking Calendar plugin for WordPress has a stored XSS vulnerability in its bookingform shortcode. Authenticated attackers with contributor-level access or higher can inject malicious scripts t...