VYPR

Booking Calendar And Notification

by WordPress

Source repositories

CVEs (3)

  • CVE-2025-31403CriApr 4, 2025
    risk 0.60cvss 9.3epss 0.00

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in shiptrack Booking Calendar and Notification booking-calendar-and-notification allows Blind SQL Injection.This issue affects Booking Calendar and Notification: from n/a through…

  • CVE-2025-31381MedApr 4, 2025
    risk 0.42cvss 6.5epss 0.00

    Missing Authorization vulnerability in shiptrack Booking Calendar and Notification booking-calendar-and-notification allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Booking Calendar and Notification: from n/a through <= 4.0.3.

  • CVE-2024-13746MedMar 1, 2025
    risk 0.42cvss 6.5epss 0.00

    The Booking Calendar and Notification plugin for WordPress is vulnerable to unauthorized access, modification, and loss of data due to missing capability checks on the wpcb_all_bookings(), wpcb_update_booking_post(), and wpcb_delete_posts() functions in all versions up to, and…