PT-2025-17537 · Roland Murg · Wp Simple Booking Calendar

Trương Hữu Phúc

·

Published

2025-04-22

·

Updated

2025-09-09

·

CVE-2025-39541

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions: WP Simple Booking Calendar versions through 2.0.13
Description: The WP Simple Booking Calendar plugin is susceptible to a missing authorization issue. This allows unauthorized access to functionalities within the plugin.
Recommendations: Update WP Simple Booking Calendar to a version beyond 2.0.13.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2025-39541

Affected Products

Wp Simple Booking Calendar