Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1325 CNY

100%

WP Time Slots Booking Form — Vulnerabilities & Security Advisories 12

All 12 CVE vulnerabilities found in WP Time Slots Booking Form, with AI-generated Chinese analysis, references, and POCs.

This page catalogs security vulnerabilities associated with the WP Time Slots Booking Form plugin, categorized under WordPress plugin weaknesses and tagged for specific exploitation vectors. It aggregates reports ranging from critical remote code execution risks to less severe issues like stored cross-site scripting and broken access control flaws. The data set covers advisories disclosed between 2021 and 2024, ensuring a comprehensive view of the plugin's security landscape during this period. Visitors to this page can track the historical advisories issued by the vendor or discovered by the security community, providing insight into how the developer responds to critical flaws over time. Users can also gain a deeper understanding of specific weakness classes by observing how they manifest within the context of this particular booking form tool. Furthermore, developers and site administrators can look up the complete vulnerability history of WP Time Slots Booking Form to assess the overall risk posture of their installations. This resource serves as a neutral reference for auditing third-party dependencies, helping stakeholders make informed decisions about plugin maintenance, patching priorities, and potential migration strategies. By consolidating these findings, the page eliminates the need to search multiple sources for scattered security reports, offering a single point of truth for assessing the stability and trustworthiness of this widely used WordPress extension.

Vendor: Unknown

CVE IDTitleCVSSSeverityPublished
CVE-2026-48882 WordPress WP Time Slots Booking Form plugin <= 1.2.50 - SQL Injection vulnerability CWE-89 8.5 High2026-06-15
CVE-2026-40791 WordPress WP Time Slots Booking Form plugin <= 1.2.46 - Cross Site Scripting (XSS) vulnerability CWE-79 7.1 High2026-06-15
CVE-2026-32432 WordPress WP Time Slots Booking Form plugin <= 1.2.42 - Broken Access Control vulnerability CWE-862 5.3 Medium2026-03-13
CVE-2025-68569 WordPress WP Time Slots Booking Form plugin <= 1.2.39 - Broken Access Control vulnerability CWE-862 6.5 Medium2025-12-24
CVE-2025-49332 WordPress WP Time Slots Booking Form plugin <= 1.2.30 - Cross Site Request Forgery (CSRF) Vulnerability CWE-352 4.3 Medium2025-06-06
CVE-2023-23895 WordPress WP Time Slots Booking Form plugin <= 1.1.82 - Broken Access Control vulnerability CWE-862 4.7 Medium2024-12-09
CVE-2024-35735 WordPress WP Time Slots Booking Form plugin <= 1.2.11 - Broken Access Control vulnerability CWE-862 5.3 Medium2024-06-10
CVE-2024-33543 WordPress WP Time Slots Booking Form plugin <= 1.2.06 - Broken Access Control vulnerability CWE-862 7.5 High2024-06-09
CVE-2024-35734 WordPress WP Time Slots Booking Form plugin <= 1.2.10 - Cross Site Scripting (XSS) vulnerability CWE-79 7.1 High2024-06-08
CVE-2022-41790 WordPress WP Time Slots Booking Form Plugin <= 1.1.76 is vulnerable to Broken Access Control CWE-862 4.3 Medium2024-01-17
CVE-2023-23971 WordPress WP Time Slots Booking Form Plugin <= 1.1.81 is vulnerable to Cross Site Scripting (XSS) CWE-79 5.9 Medium2023-04-06
CVE-2022-0389 WP Time Slots Booking Form < 1.1.63 - Admin+ Stored Cross-Site Scripting CWE-79 4.8 -2022-03-07

All 12 known CVE vulnerabilities affecting WP Time Slots Booking Form with full Chinese analysis, references, and POCs where available.