Input validation vulnerability in Appointment Booking Calendar 1.3.35

The Appointment Booking Calendar plugin before version 1.3.35 for WordPress had a security vulnerability that allowed someone to enter a special code in certain fields like Description or Name when they made a booking. This code could then be exported when someone looked at the list of bookings in the WordPress admin page. This code could be used to run malicious programs on the website

Detected in:

Appointment Booking Calendar fixed vulnerable versions: >= * < 1.3.35

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.