Extension WordPress

Vulnérabilités Appointment Booking Plugin for WooCommerce | Online Booking Calendar & Service Manager

Cette page rassemble les failles publiées pour Appointment Booking Plugin for WooCommerce | Online Booking Calendar & Service Manager, leurs plages de versions affectées et les correctifs signalés dans la base locale.

4Vulnérabilités
1Critiques
3Avec correctif
9,8CVSS maximal

Historique de sécurité

CVE et vulnérabilités de Appointment Booking Plugin for WooCommerce | Online Booking Calendar & Service Manager

4 fiches

CVE-2026-25444 Moyenne · 4,3
Appointment Booking Plugin for WooCommerce | Online Booking Calendar & Service Manager

Appointment Booking Plugin for WooCommerce – WpBookingly | All-in-One Service Manager <= 1.2.9 – Missing Authorization

The Appointment Booking Plugin for WooCommerce – WpBookingly | All-in-One Service Manager plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to, and including, 1.2.9. This makes…

Versions affectées

*-1.2.9

Correctif

1.3.0

Publication

26/05/2026

CVE-2026-27405 Moyenne · 4,3
Appointment Booking Plugin for WooCommerce | Online Booking Calendar & Service Manager

Appointment Booking Plugin for WooCommerce – WpBookingly | All-in-One Service Manager <= 1.2.9 – Missing Authorization

The Appointment Booking Plugin for WooCommerce – WpBookingly | All-in-One Service Manager plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to, and including, 1.2.9. This makes…

Versions affectées

*-1.2.9

Correctif

1.3.0

Publication

20/05/2026

CVE-2026-32384 Élevée · 7,5
Appointment Booking Plugin for WooCommerce | Online Booking Calendar & Service Manager

WpBookingly <= 1.2.9 – Authenticated (Contributor+) Local File Inclusion

The WpBookingly plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 1.2.9. This makes it possible for authenticated attackers, with contributor-level access and above, to include and execute arbitrary files on the…

Versions affectées

*-1.2.9

Correctif

1.3.0

Publication

18/02/2026

CVE-2025-32607 Critique · 9,8
Appointment Booking Plugin for WooCommerce | Online Booking Calendar & Service Manager

WpBookingly <= 1.2.1 – Unauthenticated PHP Object Injection

The WpBookingly plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 1.2.1 via deserialization of untrusted input. This makes it possible for unauthenticated attackers to inject a PHP Object. No known POP…

Versions affectées

*-1.2.1

Correctif

Non indiqué

Publication

10/04/2025

WP Commander

Rechercher dans toute la base WordPress

Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.

Ouvrir le tableau des vulnérabilités