WordPress Online Booking and Scheduling Plugin – Bookly

Bookly is a scheduling plugin for WordPress that enables businesses to accept online bookings and automate their reservation system. The plugin allows users to manage their booking calendar, services, and client base in one place. Bookly offers a free version, but online payments, unlimited staff members and services, and add-ons are only available in the paid version, Bookly Pro. The plugin is suitable for businesses of all types, from hair salons to wealth management. Over 60,000 businesses worldwide have already automated their online booking system using Bookly.

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Input validation vulnerability in WordPress Online Booking and Scheduling Plugin – Bookly 23.2

    Fixed

    A popular tool for scheduling and booking appointments on WordPress websites, called Bookly, has a security vulnerability that allows hackers to insert harmful code into the site. This can be done by...

    Read More
  • Input validation vulnerability in WordPress Online Booking and Scheduling Plugin – Bookly 22.4.1

    Fixed

    The WordPress Online Booking and Scheduling Plugin – Bookly plugin for WordPress has a security vulnerability that could allow malicious actors with administrator-level access to inject malicious w...

    Read More
  • Input validation vulnerability in WordPress Online Booking and Scheduling Plugin – Bookly 22.3.1

    Fixed

    The Bookly plugin for WordPress, up to version 22.3.1, is vulnerable to a type of attack called SQL Injection. This type of attack happens when an attacker with administrator privileges is able to ad...

    Read More
  • Input validation vulnerability in WordPress Online Booking and Scheduling Plugin – Bookly 21.7

    Fixed

    The Bookly plugin for WordPress is vulnerable to a type of attack called Stored Cross-Site Scripting. This means that versions up to and including 21.5 of the plugin are not secure enough to prevent ...

    Read More
  • Input validation vulnerability in WordPress Online Booking and Scheduling Plugin – Bookly 21.5

    Fixed

    The Bookly plugin for WordPress is not secure in versions up to 21.5. This means that it can be used by unauthenticated attackers to inject dangerous web scripts into pages. These scripts then execute...

    Read More
  • Access violation vulnerability in WordPress Online Booking and Scheduling Plugin – Bookly 21.7.1

    Fixed

    The Bookly plugin for WordPress is not secure in versions up to 21.7.1. This means that someone with access to the site's server, such as an employee, can delete files, which could lead to the site b...

    Read More
  • Input validation vulnerability in WordPress Online Booking and Scheduling Plugin – Bookly 20.3

    Fixed

    Read More
  • Input validation vulnerability in WordPress Online Booking and Scheduling Plugin – Bookly 14.5

    Fixed

    The Online Booking and Scheduling plugin for WordPress has a security problem in versions 14.5 and earlier. This security problem allows someone who isn't authorized to use the plugin to add their own...

    Read More