Vulnerabilities > Stylemixthemes > Bookit > 2.2.5

DATE CVE VULNERABILITY TITLE RISK
2023-12-28 CVE-2023-50852 SQL Injection vulnerability in Stylemixthemes Bookit
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in StylemixThemes Booking Calendar | Appointment Booking | BookIt.This issue affects Booking Calendar | Appointment Booking | BookIt: from n/a through 2.4.3.
network
low complexity
stylemixthemes CWE-89
7.2
2023-06-30 CVE-2023-2834 Missing Authentication for Critical Function vulnerability in Stylemixthemes Bookit
The BookIt plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 2.3.7.
network
low complexity
stylemixthemes CWE-306
critical
9.8