WPdevelop Booking Calendar
5 known vulnerabilities in WPdevelop Booking Calendar, with patch priority, exploit likelihood and the news covering them.
Latest vulnerabilities
- CVE-2026-39601 CVSS 3.7 low Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') vulnerability in WPdevelop Booking Calendar…
- CVE-2026-93655 CVSS 6.1 medium The Booking Calendar plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'wpbc_auto_fill' parameter in all…
- CVE-2026-92619 CVSS 7.2 high The Booking Calendar plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 11.8.2 via the…
- CVE-2026-92561 CVSS 6.1 medium The Booking Calendar plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'options' parameter in all versions up…
- CVE-2026-74002 CVSS 5.3 medium Unauthenticated Broken Access Control in Booking Calendar <= 11.7 versions.