Input validation vulnerability in Checkfront Online Booking System 3.6

The Checkfront Online Booking System plugin for WordPress is not secure in versions up to and including 3.6. This is because it does not have a system in place to make sure only authorized people can make changes. This means that if someone can fool a website administrator into clicking a link, they can use a fake request to alter the plugin’s settings and inject malicious JavaScript.

Detected in:

Checkfront Online Booking System fixed vulnerable versions: >= * <= 3.6

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.