Missing Authorization vulnerability in wpdevart Booking calendar, Appointment Booking System booking-calendar allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Booking calendar, Appointment Booking System: from n/a through <= 3.2.30.
Metrics
Affected Vendors & Products
References
History
Wed, 10 Dec 2025 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wordpress
Wordpress wordpress Wpdevart Wpdevart booking Calendar |
|
| Vendors & Products |
Wordpress
Wordpress wordpress Wpdevart Wpdevart booking Calendar |
Tue, 09 Dec 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Tue, 09 Dec 2025 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Missing Authorization vulnerability in wpdevart Booking calendar, Appointment Booking System booking-calendar allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Booking calendar, Appointment Booking System: from n/a through <= 3.2.30. | |
| Title | WordPress Booking calendar, Appointment Booking System plugin <= 3.2.30 - Broken Access Control vulnerability | |
| Weaknesses | CWE-862 | |
| References |
|
Status: PUBLISHED
Assigner: Patchstack
Published: 2025-12-09T14:14:13.576Z
Updated: 2025-12-09T15:09:32.679Z
Reserved: 2025-12-09T12:21:28.863Z
Link: CVE-2025-67574
Updated: 2025-12-09T15:09:26.609Z
Status : Awaiting Analysis
Published: 2025-12-09T16:18:34.520
Modified: 2025-12-09T18:36:29.050
Link: CVE-2025-67574
No data.