Extension WordPress
Vulnérabilités Time Slot – Booking and Appointment System
Cette page rassemble les failles publiées pour Time Slot – Booking and Appointment System, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Time Slot – Booking and Appointment System
2 fiches
Booking Plugin for WordPress Appointments – Time Slot <= 1.4.7 – Unauthenticated Arbitrary Email Sending
The Booking Plugin for WordPress Appointments – Time Slot plugin for WordPress is vulnerable to unauthorized email sending in versions up to, and including, 1.4.7 due to missing validation on the tslot_appt_email AJAX action. This makes it possible…
*-1.4.7
1.4.8
18/11/2025
Time Slot <= 1.3.6 – Authenticated (Contributor+) Stored Cross-Site Scripting
The Time Slot plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 1.3.6 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and…
*-1.3.6
1.3.7
24/10/2024
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.