WP Booking Calendar

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Input validation vulnerability in WP Booking Calendar 10.11.1

    Fixed

    The WP Booking Calendar plugin for WordPress has a security issue that allows attackers to inject harmful code into pages. This is possible because the plugin does not properly filter out dangerous c...

    Read More
  • Access violation vulnerability in WP Booking Calendar 10.10

    Fixed

    The WP Booking Calendar plugin for WordPress has a security issue that affects all versions up to 10.10. This means that anyone, even without an account, can change their booking after it has been co...

    Read More
  • Input validation vulnerability in WP Booking Calendar 10.9.2

    Fixed

    The WP Booking Calendar plugin for WordPress has a security issue that can allow malicious code to be injected into web pages. This can happen when a user with certain levels of access uses the plugi...

    Read More
  • Input validation vulnerability in WP Booking Calendar 10.6.4

    Fixed

    The WP Booking Calendar plugin for WordPress has a security issue that could allow unauthorized code to be inserted into certain pages. This can happen when someone with administrator or higher permi...

    Read More
  • Input validation vulnerability in WP Booking Calendar 10.6.2

    Fixed

    The WP Booking Calendar tool used for WordPress has a security flaw where hackers can insert harmful code through the admin settings. This can only happen if the attacker has high-level access and is...

    Read More
  • Input validation vulnerability in WP Booking Calendar 10.6

    Fixed

    The WP Booking Calendar plugin for WordPress has a security issue that could allow hackers to insert harmful code into certain pages. This can happen if the website administrator has not properly fil...

    Read More
  • Input validation vulnerability in WP Booking Calendar 10.5

    Fixed

    A popular tool called WP Booking Calendar, used on WordPress websites, has a security vulnerability called Reflected Cross-Site Scripting. This means that attackers can add harmful code to a website ...

    Read More
  • Input validation vulnerability in WP Booking Calendar 10.2.1

    Fixed

    The WP Booking Calendar plugin for WordPress has a security issue that allows attackers to inject harmful code into website pages. This can happen because the plugin does not properly clean and prote...

    Read More
  • Input validation vulnerability in WP Booking Calendar 9.9

    Fixed

    The WP Booking Calendar plugin for WordPress has a security issue called SQL Injection, which can happen in all versions up to 9.9. This happens because the plugin does not properly protect informati...

    Read More
  • Input validation vulnerability in Booking Calendar 9.7.4

    Fixed

    The Booking Calendar plugin for WordPress is vulnerable to a type of attack called Stored Cross-Site Scripting. This kind of attack is possible because the plugin does not properly check and protect ...

    Read More
  • Input validation vulnerability in Booking Calendar 9.7.3

    Fixed

    The Booking Calendar plugin for WordPress released an update which fixes a security vulnerability. This vulnerability allows malicious attackers to inject arbitrary web scripts into pages viewed by u...

    Read More
  • Input validation vulnerability in Booking Calendar 4.1.6

    Fixed

    The Booking Calendar plugin for WordPress has a security issue where attackers can make changes to the calendar without permission. This can be done by tricking a site administrator into clicking on ...

    Read More
  • Input validation vulnerability in Booking Calendar 6.2.1

    Fixed

    The Booking Calendar plugin for WordPress has a vulnerability that could allow people with Editor-level access to the plugin to extract sensitive information from the database due to a lack of securi...

    Read More
  • Input validation vulnerability in Booking Calendar 6.2.1

    Fixed

    The Booking Calendar plugin for WordPress is potentially vulnerable to a type of attack called Cross-Site Request Forgery. This vulnerability affects versions of the plugin up to and including versio...

    Read More
  • Input validation vulnerability in Booking Calendar 8.9.1

    Fixed

    (XSS) vulnerability

    Read More
  • Input validation vulnerability in Booking Calendar 9.2.1

    Fixed

    The Booking Calendar plugin for WordPress had a security vulnerability in versions up to and including 9.2.1. An attacker who could get a site administrator to click on a link could use this vulnerabi...

    Read More
  • Input validation vulnerability in Booking Calendar 8.4.3

    Fixed

    The Booking Calendar plugin version 8.4.3 for WordPress has a security issue which could allow someone who is not authorized to access the website to run certain commands. These commands could allow t...

    Read More
  • Input validation vulnerability in Booking Calendar 6.2.1

    Fixed

    The Booking Calendar plugin for WordPress has a security vulnerability in versions 6.2 and earlier. This vulnerability is caused by the incorrect or missing validation of nonce in the plugin's Import...

    Read More
  • Input validation vulnerability in Booking Calendar 9.4.2

    Fixed

    The Booking Calendar plugin for WordPress

    Read More
  • Output validation vulnerability in Booking Calendar 9.1

    Fixed

    The Booking Calendar plugin for WordPress is not secure in versions up to

    Read More