VYPR

Webba Booking

by Webba Booking

Source repositories

CVEs (3)

  • CVE-2021-36847MedAug 22, 2022
    risk 0.31cvss 4.8epss 0.01

    Authenticated (admin+) Stored Cross-Site Scripting (XSS) vulnerability in WebbaPlugins Webba Booking plugin <= 4.2.21 at WordPress.

  • CVE-2023-51354MedDec 29, 2023
    risk 0.28cvss 4.3epss 0.00

    Cross-Site Request Forgery (CSRF) vulnerability in WebbaPlugins Appointment & Event Booking Calendar Plugin – Webba Booking.This issue affects Appointment & Event Booking Calendar Plugin – Webba Booking: from n/a through 4.5.33.

  • CVE-2024-8432MedSep 24, 2024
    risk 0.21cvss 4.3epss 0.00

    The Appointment & Event Booking Calendar Plugin – Webba Booking plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the save_appearance() function in all versions up to, and including, 5.0.48. This makes it possible for…