Input validation vulnerability in Beds24 Online Booking 2.0.29

The Beds24 Online Booking plugin for WordPress has a security issue that allows hackers to insert harmful code onto web pages. This can occur when using the ‘bookwidget’ feature and affects all versions up to 2.0.29. The plugin does not properly protect against malicious code, which means that attackers with contributor-level access or higher can inject their own code onto pages. This can be triggered whenever a user visits the affected page.

Detected in:

Beds24 Online Booking fixed vulnerable versions: >= * <= 2.0.29

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.