| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-32155 | WordPress Beds24 Online Booking plugin <= 2.0.28 - Local File Inclusion vulnerability | markkinchin | Beds24 Online Booking | High | 7.5 | 2025-04-04 15:58:40 | Deep Dive |
| CVE-2025-3186 | projectworlds Online Doctor Appointment Booking System invoice.php sql injection | projectworlds | Online Doctor Appointment Booking System | High | 7.3 | 2025-04-03 23:31:05 | Deep Dive |
| CVE-2025-3185 | projectworlds Online Doctor Appointment Booking System patientupdateprofile.php sql injection | projectworlds | Online Doctor Appointment Booking System | High | 7.3 | 2025-04-03 23:00:13 | Deep Dive |
| CVE-2025-3184 | projectworlds Online Doctor Appointment Booking System profile.php sql injection | projectworlds | Online Doctor Appointment Booking System | High | 7.3 | 2025-04-03 22:31:05 | Deep Dive |
| CVE-2025-3183 | projectworlds Online Doctor Appointment Booking System patientupdateprofile.php sql injection | projectworlds | Online Doctor Appointment Booking System | High | 7.3 | 2025-04-03 22:00:16 | Deep Dive |
| CVE-2025-3182 | projectworlds Online Doctor Appointment Booking System getschedule.php sql injection | projectworlds | Online Doctor Appointment Booking System | High | 7.3 | 2025-04-03 21:31:07 | Deep Dive |
| CVE-2025-3181 | projectworlds Online Doctor Appointment Booking System appointment.php sql injection | projectworlds | Online Doctor Appointment Booking System | High | 7.3 | 2025-04-03 21:31:05 | Deep Dive |
| CVE-2025-3180 | projectworlds Online Doctor Appointment Booking System deleteschedule.php sql injection | projectworlds | Online Doctor Appointment Booking System | High | 7.3 | 2025-04-03 21:00:12 | Deep Dive |
| CVE-2025-3179 | projectworlds Online Doctor Appointment Booking System deletepatient.php sql injection | projectworlds | Online Doctor Appointment Booking System | High | 7.3 | 2025-04-03 21:00:10 | Deep Dive |
| CVE-2025-3178 | projectworlds Online Doctor Appointment Booking System deleteappointment.php sql injection | projectworlds | Online Doctor Appointment Booking System | High | 7.3 | 2025-04-03 20:31:04 | Deep Dive |
| CVE-2025-31851 | WordPress Beds24 Online Booking plugin <= 2.0.27 - Cross Site Scripting (XSS) vulnerability | markkinchin | Beds24 Online Booking | Medium | 6.5 | 2025-04-01 14:52:01 | Deep Dive |
| CVE-2025-2382 | PHPGurukul Online Banquet Booking System booking-search.php sql injection | PHPGurukul | Online Banquet Booking System | High | 7.3 | 2025-03-17 15:00:09 | Deep Dive |
| CVE-2025-1965 | projectworlds Online Hotel Booking login.php sql injection | projectworlds | Online Hotel Booking | High | 7.3 | 2025-03-05 01:00:08 | Deep Dive |
| CVE-2025-1964 | projectworlds Online Hotel Booking booknow.php sql injection | projectworlds | Online Hotel Booking | High | 7.3 | 2025-03-05 00:31:05 | Deep Dive |
| CVE-2025-1963 | projectworlds Online Hotel Booking reservation.php sql injection | projectworlds | Online Hotel Booking | High | 7.3 | 2025-03-05 00:00:10 | Deep Dive |
| CVE-2025-1962 | projectworlds Online Hotel Booking addroom.php sql injection | projectworlds | Online Hotel Booking | High | 7.3 | 2025-03-04 23:31:05 | Deep Dive |
| CVE-2024-13455 | igumbi Online Booking <= 1.40 - Authenticated (Contributor+) Stored Cross-Site Scripting | smtm | igumbi Online Booking | Medium | 6.4 | 2025-02-21 11:09:34 | Deep Dive |
| CVE-2025-23653 | WordPress Form To Online Booking plugin <= 1.0 - Reflected Cross Site Scripting (XSS) vulnerability | Nabeel Tahir | Form To Online Booking | High | 7.1 | 2025-02-14 12:44:31 | Deep Dive |
| CVE-2024-54356 | WordPress Online Booking & Scheduling Calendar for WordPress by vcita plugin <= 4.5 - Cross Site Request Forgery (CSRF) vulnerability | vcita | Online Booking & Scheduling Calendar for WordPress by vcita | Medium | 5.4 | 2024-12-16 14:14:13 | Deep Dive |
| CVE-2024-11275 | WP Timetics- AI-powered Appointment Booking Calendar and Online Scheduling Plugin <= 1.0.27 - Missing Authorization to Authenticated (Subscriber+) Arbitrary User Deletion | arraytics | Timetics – Appointment Booking & Scheduling | Medium | 4.3 | 2024-12-13 08:24:52 | Deep Dive |