Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Booking calendar, Appointment Booking System — Vulnerabilities & Security Advisories 14

All 14 CVE vulnerabilities found in Booking calendar, Appointment Booking System, with AI-generated Chinese analysis, references, and POCs.

This page documents security vulnerabilities associated with the Booking calendar and Appointment Booking System product, focusing on common weakness types such as injection flaws, broken access control, and cross-site scripting. It aggregates known security issues affecting this specific appointment scheduling software to provide a centralized view of its risk posture and historical exposure. The collection includes vulnerabilities identified through vendor advisories, public disclosures, and security research, covering a broad time range from initial releases to recent updates. Here, you can track a vendor's advisories to stay informed about newly discovered flaws and patches, understand the characteristics and impact of a specific weakness class within the context of booking systems, and look up a product's vulnerability history to assess long-term security trends and remediation effectiveness. This resource aims to help security professionals, system administrators, and developers evaluate the risks associated with deploying or maintaining this appointment booking solution by providing clear, structured data on past incidents. By reviewing these entries, users can better comprehend the nature of past attacks, identify recurring security patterns, and make informed decisions regarding configuration, updates, or alternative solutions to mitigate potential threats. The data is presented without marketing bias, offering a factual record of security events to support transparency and informed decision-making in the management of this scheduling software.

Vendor: Unknown

CVE IDTitleCVSSSeverityPublished
CVE-2026-8840 Booking calendar, Appointment Booking System <= 3.2.36 - Missing Authorization to Unauthenticated Arbitrary Modification via wpdevart_payment AJAX Action CWE-862 5.3 Medium2026-08-15
CVE-2026-57778 WordPress Booking calendar, Appointment Booking System plugin <= 3.2.36 - Broken Access Control vulnerability CWE-862 5.3 Medium2026-07-13
CVE-2026-15289 Booking calendar, Appointment Booking System <= 3.2.17 - Unauthenticated Time-Based SQL Injection via 'wpdevart_id' CWE-89 5.9 Medium2026-07-10
CVE-2026-25435 WordPress Booking calendar, Appointment Booking System plugin <= 3.2.36 - Cross Site Scripting (XSS) vulnerability CWE-79 7.1 High2026-03-25
CVE-2025-67574 WordPress Booking calendar, Appointment Booking System plugin <= 3.2.30 - Broken Access Control vulnerability CWE-862 5.3 Medium2025-12-09
CVE-2024-12077 Booking Calendar and Booking Calendar Pro <= Multiple Versions - Reflected Cross-Site Scripting via 'calendar_id' CWE-79 6.1 Medium2025-01-07
CVE-2024-10856 Booking Calendar WpDevArt <= 3.2.19 - Authenticated (Contributor+) SQL Injection CWE-89 6.5 Medium2024-12-24
CVE-2023-24407 WordPress Booking calendar, Appointment Booking System plugin <= 3.2.3 - Broken Access Control vulnerability CWE-862 5.0 Medium2024-12-09
CVE-2024-9504 Booking calendar, Appointment Booking System <= 3.2.15 - Unauthenticated Stored Cross-Site Scripting via SVG File Upload CWE-434 7.2 High2024-11-26
CVE-2023-24373 WordPress Booking calendar, Appointment Booking System plugin <= 3.2.3 - Bypass vulnerability CWE-472 3.7 Low2024-06-03
CVE-2022-47428 WordPress Booking calendar, Appointment Booking System Plugin <= 3.2.7 is vulnerable to SQL Injection CWE-89 6.7 Medium2023-11-06
CVE-2022-47438 WordPress Booking calendar, Appointment Booking System Plugin <= 3.2.3 is vulnerable to Cross Site Scripting (XSS) CWE-79 5.9 Medium2023-03-29
CVE-2023-24388 WordPress Booking calendar, Appointment Booking System Plugin <= 3.2.3 is vulnerable to Cross Site Request Forgery (CSRF) CWE-352 5.4 Medium2023-02-17
CVE-2022-3982 Booking Calendar < 3.2.2 - Unauthenticated Arbitrary File Upload 9.8 -2022-12-12

All 14 known CVE vulnerabilities affecting Booking calendar, Appointment Booking System with full Chinese analysis, references, and POCs where available.