Bookingpress
This hub aggregates every CVE we track for Bookingpress, a product in the web cms plugins space. Use it to gauge the current risk picture and drill into individual advisories.
14
CVEs tracked
1
Critical
7
High
0
In CISA KEV
Severity distribution
HIGH7MEDIUM6CRITICAL1
Monthly trend
0
0
1
0
1
0
0
1
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 14 most recently published vulnerabilities affecting Bookingpress.
- CVE-2025-31910WordPress BookingPress plugin <= 1.1.28 - SQL Injection vulnerability7.6
- CVE-2025-24732WordPress BookingPress Plugin <= 1.1.25 - Cross Site Scripting (XSS) vulnerability6.5
- CVE-2024-10540Appointment Booking Calendar Plugin and Scheduling Plugin – BookingPress <= 1.1.16 - Authenticated (Subscriber+) SQL Injection5.3
- CVE-2024-6467BookingPress Appointment Booking <= 1.1.5 - Authenticated (Subscriber+) Arbitrary File Read to Arbitrary File Creation8.8
- CVE-2024-6660BookingPress – Appointment Booking Calendar Plugin and Online Scheduling Plugin <= 1.1.5 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Options Update and Arbitrary File Upload8.8
- CVE-2024-34799WordPress BookingPress plugin <= 1.0.82 - Appointment Duration Manipulation vulnerability6.5
- CVE-2023-51405WordPress BookingPress plugin <= 1.0.74 - Booking Price Manipulation vulnerability8.2
- CVE-2024-31296WordPress BookingPress plugin <= 1.0.81 - Insecure Direct Object References (IDOR) vulnerability4.3
- CVE-2024-3022BookingPress – Appointment Booking Calendar Plugin and Online Scheduling Plugin <= 1.0.87 - Authenticated (Admin+) Arbitrary File Upload7.2
- CVE-2023-50841WordPress BookingPress Plugin <= 1.0.72 is vulnerable to SQL Injection8.5
- CVE-2023-36507WordPress BookingPress Plugin <= 1.0.64 is vulnerable to Sensitive Data Exposure5.3
- CVE-2023-6219BookingPress <= 1.0.76 - Authenticated (Administrator+) Arbitrary File Upload7.2
- CVE-2022-4340BookingPress < 1.0.31 - Unauthenticated IDOR in appointment_id5.3
- CVE-2022-0739BookingPress < 1.0.11 - Unauthenticated SQL Injection9.8
Product normalization is registry-driven with AI assist and human review. How it works