Appointment booking calendar plugin and scheduling plugin – bookingpress
This hub aggregates every CVE we track for Appointment booking calendar plugin and scheduling plugin – bookingpress. Use it to gauge the current risk picture and drill into individual advisories.
other
7
CVEs tracked
1
Critical
4
High
0
In CISA KEV
Severity distribution
HIGH4MEDIUM2CRITICAL1
Monthly trend
0
0
1
1
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 7 most recently published vulnerabilities affecting Appointment booking calendar plugin and scheduling plugin – bookingpress.
- CVE-2024-11726Appointment Booking Calendar Plugin and Scheduling Plugin – BookingPress <= 1.1.21 - Authenticated (Contributor+) SQL Injection6.5
- CVE-2024-10540Appointment Booking Calendar Plugin and Scheduling Plugin – BookingPress <= 1.1.16 - Authenticated (Subscriber+) SQL Injection5.3
- CVE-2024-7350Appointment Booking Calendar Plugin and Online Scheduling Plugin – BookingPress 1.1.6 - 1.1.7 - Authentication Bypass to Account Takeover9.8
- CVE-2024-6467BookingPress Appointment Booking <= 1.1.5 - Authenticated (Subscriber+) Arbitrary File Read to Arbitrary File Creation8.8
- CVE-2024-6660BookingPress – Appointment Booking Calendar Plugin and Online Scheduling Plugin <= 1.1.5 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Options Update and Arbitrary File Upload8.8
- CVE-2024-3022BookingPress – Appointment Booking Calendar Plugin and Online Scheduling Plugin <= 1.0.87 - Authenticated (Admin+) Arbitrary File Upload7.2
- CVE-2023-6219BookingPress <= 1.0.76 - Authenticated (Administrator+) Arbitrary File Upload7.2
Product normalization is registry-driven with AI assist and human review. How it works