Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

WP Time Slots Booking Form — Vulnerabilities & Security Advisories 12

All 12 CVE vulnerabilities found in WP Time Slots Booking Form, with AI-generated Chinese analysis, references, and POCs.

This page catalogs security vulnerabilities associated with the WP Time Slots Booking Form plugin, categorized under WordPress plugin weaknesses and tagged for specific exploitation vectors. It aggregates reports ranging from critical remote code execution risks to less severe issues like stored cross-site scripting and broken access control flaws. The data set covers advisories disclosed between 2021 and 2024, ensuring a comprehensive view of the plugin's security landscape during this period. Visitors to this page can track the historical advisories issued by the vendor or discovered by the security community, providing insight into how the developer responds to critical flaws over time. Users can also gain a deeper understanding of specific weakness classes by observing how they manifest within the context of this particular booking form tool. Furthermore, developers and site administrators can look up the complete vulnerability history of WP Time Slots Booking Form to assess the overall risk posture of their installations. This resource serves as a neutral reference for auditing third-party dependencies, helping stakeholders make informed decisions about plugin maintenance, patching priorities, and potential migration strategies. By consolidating these findings, the page eliminates the need to search multiple sources for scattered security reports, offering a single point of truth for assessing the stability and trustworthiness of this widely used WordPress extension.

Vendor: Unknown

CVE ID Title CVSS Severity Published
CVE-2026-48882 WordPress WP Time Slots Booking Form plugin <= 1.2.50 - SQL Injection vulnerability CWE-89 8.5 High 2026-06-15
CVE-2026-40791 WordPress WP Time Slots Booking Form plugin <= 1.2.46 - Cross Site Scripting (XSS) vulnerability CWE-79 7.1 High 2026-06-15
CVE-2026-32432 WordPress WP Time Slots Booking Form plugin <= 1.2.42 - Broken Access Control vulnerability CWE-862 5.3 Medium 2026-03-13
CVE-2025-68569 WordPress WP Time Slots Booking Form plugin <= 1.2.39 - Broken Access Control vulnerability CWE-862 6.5 Medium 2025-12-24
CVE-2025-49332 WordPress WP Time Slots Booking Form plugin <= 1.2.30 - Cross Site Request Forgery (CSRF) Vulnerability CWE-352 4.3 Medium 2025-06-06
CVE-2023-23895 WordPress WP Time Slots Booking Form plugin <= 1.1.82 - Broken Access Control vulnerability CWE-862 4.7 Medium 2024-12-09
CVE-2024-35735 WordPress WP Time Slots Booking Form plugin <= 1.2.11 - Broken Access Control vulnerability CWE-862 5.3 Medium 2024-06-10
CVE-2024-33543 WordPress WP Time Slots Booking Form plugin <= 1.2.06 - Broken Access Control vulnerability CWE-862 7.5 High 2024-06-09
CVE-2024-35734 WordPress WP Time Slots Booking Form plugin <= 1.2.10 - Cross Site Scripting (XSS) vulnerability CWE-79 7.1 High 2024-06-08
CVE-2022-41790 WordPress WP Time Slots Booking Form Plugin <= 1.1.76 is vulnerable to Broken Access Control CWE-862 4.3 Medium 2024-01-17
CVE-2023-23971 WordPress WP Time Slots Booking Form Plugin <= 1.1.81 is vulnerable to Cross Site Scripting (XSS) CWE-79 5.9 Medium 2023-04-06
CVE-2022-0389 WP Time Slots Booking Form < 1.1.63 - Admin+ Stored Cross-Site Scripting CWE-79 4.8 - 2022-03-07

All 12 known CVE vulnerabilities affecting WP Time Slots Booking Form with full Chinese analysis, references, and POCs where available.