Input validation vulnerability in Pinpoint Booking System – #1 WordPress Booking Plugin 2.9.9.2.9

The Pinpoint Booking System plugin for WordPress has a security issue. People with administrator-level permissions or higher can inject malicious web scripts into certain pages. This affects multi-site installations and sites where certain html has been disabled. The security issue affects versions 2.9.9.2.8 and earlier of the plugin and is caused by not properly checking the input and output of information.

Detected in:

Pinpoint Booking System – #1 WordPress Booking Plugin open vulnerable versions: >= * < 2.9.9.2.9

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.