Booking Calendar Project

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 10
    Known Exploited: 0
    0
    Critical Level Threats
    4
    High Level Threats
    6
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2023-36384

    WordPress Booking Calendar Contact Form Plugin <= 1.2.40 is vulnerable to Cross Site Scripting (XSS)

    Last Modified: Nov 21, 2024
    Published: Jul 18, 2023

    CVE-2022-1463

    Booking Calendar <= 9.1 - PHP Object Injection via Shortcode

    Last Modified: Feb 13, 2025
    Published: May 10, 2022

    CVE-2021-25040

    Booking Calendar < 8.9.2 - Reflected Cross-Site Scripting

    Last Modified: Nov 21, 2024
    Published: Jan 03, 2022

    CVE-2018-20556

    SQL injection vulnerability in Booking Calendar plugin 8.4.3 for WordPress allows remote attackers to execute arbitrary SQL commands via the booking_id parameter.

    Last Modified: Nov 21, 2024
    Published: Mar 18, 2019

    CVE-2018-5673

    An issue was discovered in the booking-calendar plugin 2.1.7 for WordPress. CSRF exists via wp-admin/admin.php.

    Last Modified: Nov 21, 2024
    Published: Jan 13, 2018
    Items Per Page