cleantalk
Vulnerabilities and Security Researches

Appointment & Event Booking Calendar Plugin – Webba Booking, CVE-2025-54040

CVE, Research URL

CVE-2025-54040

Published on
Aug 20, 2025
Research Description
Missing Authorization vulnerability in Webba Appointment Booking Webba Booking allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Webba Booking: from n/a through 5.1.20.
Affected versions
max 5.1.22.
Status
vulnerable