Input validation vulnerability in Booking for Appointments and Events Calendar – Amelia 1.0.85

The Booking for Appointments and Events Calendar – Amelia plugin for WordPress has a security vulnerability in all versions up to, and including, 1.0.85. This vulnerability allows malicious actors with contributor-level or higher permission on the website to inject malicious scripts into pages. When a user visits an affected page, the malicious script will execute, allowing the attacker to take control of the user’s computer. It is important to update the plugin to the latest version to ensure the website is safe and secure.

Detected in:

Booking for Appointments and Events Calendar – Amelia open vulnerable versions: >= * <= 1.0.85

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.