Known vulnerabilities in Booked - Appointment Booking for WordPress
Vendor:
Boxy Studio
Software CPE:
cpe:2.3:a:boxystudio:booked:*:*:*:*:*:*:*:*
Total vulnerabilities:
2
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
2.4
2.3.5
2.3
2.7.5
2.2.6
2.2.5
2.2.4
2.2.3
2.2.2
2.2.1
2.2
2.1
2.0.10
2.0.9
2.0.8
2.0.7
2.0.6
2.0.5
2.0.4
2.0.3
2.0.2
2.0.1
2.0
1.9.15
1.9.14
1.9.13
1.9.12
1.9.11
1.9.10
1.9.9
1.9.8
1.9.7
1.9.6
1.9.5
1.9.4
1.9.3
1.9.2
1.9.1.1
1.9.1
1.9
1.8.05
1.8.04
1.8.03
1.8.02
1.8.01
1.8.0
1.7.16
1.7.15
1.7.14
1.7.13
1.7.12
1.7.11
1.7.10
1.7.9
1.7.8
1.7.7
1.7.6
1.7.5
1.7.4
1.7.3
1.7.2
1.7.1
1.7.0
1.6.20
1.6.15
1.6.14
1.6.13
1.6.12
1.6.11
1.6.10
1.6.02
1.6.01
1.5.9
1.5.8
1.5.7
1.5.6
1.5.5
1.5.4
1.5.3
1.5.2
1.5.1
1.5
1.4.9
1.4.8
1.4.7
1.4.6
1.4.5
1.4.4
1.4.3
1.4.2
1.4.1
1.4
1.3.6
1.3.5
1.3
1.2.2
1.2.1
1.2
1.1.2
1.1.1
1.1
1.0.1
1.0.0
Vulnerabilities (2)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU25732 - Improper Access Control |
CWE-284 | Medium | 2.2.6 | 03.03.2020 |
SB2020030302 |
||
| #VU36082 - Unrestricted Upload of File with Dangerous Type CVE-2019-9581 |
CWE-434 | High | - | 06.03.2019 |
SB2019030618 |