Input validation vulnerability in WordPress Online Booking and Scheduling Plugin – Bookly 23.2

A popular tool for scheduling and booking appointments on WordPress websites, called Bookly, has a security vulnerability that allows hackers to insert harmful code into the site. This can be done by changing the color profile setting, and can affect all versions of the plugin up to 23.2. This means that even users with limited access, such as staff members and subscribers, can potentially be targeted by this attack.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.