cbcvebase.

Aonetheme Service Finder Bookings vulnerabilities

6 known vulnerabilities affecting aonetheme/service_finder_bookings.

Total CVEs
6
CISA KEV
0
Public exploits
1
Exploited in wild
1
Severity breakdown
CRITICAL4HIGH2

Vulnerabilities

Page 1 of 1
CVE-2025-5947P1CRITICALCVSS 9.8ExploitedPoC≤ 6.02025-08-01
CVE-2025-5947 [CRITICAL] CWE-639 CVE-2025-5947: The Service Finder Bookings plugin for WordPress is vulnerable to privilege escalation via authentic The Service Finder Bookings plugin for WordPress is vulnerable to privilege escalation via authentication bypass in all versions up to, and including, 6.0. This is due to the plugin not properly validating a user's cookie value prior to logging them in through the service_finder_switch_back() function. This makes it possible for unauthenticated atta
nvd
CVE-2024-13442P2CRITICALCVSS 9.8≤ 5.02025-03-19
CVE-2024-13442 [CRITICAL] CWE-288 CVE-2024-13442: The Service Finder Bookings plugin for WordPress is vulnerable to privilege escalation via account t The Service Finder Bookings plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 5.0. This is due to the plugin not properly validating a user's identity prior to (1) performing a post-booking auto-login or (2) updating their profile details (e.g. password). This makes it possible fo
nvd
CVE-2025-5948P2CRITICALCVSS 9.8≤ 6.02025-09-19
CVE-2025-5948 [CRITICAL] CWE-639 CVE-2025-5948: The Service Finder Bookings plugin for WordPress is vulnerable to privilege escalation via account t The Service Finder Bookings plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 6.0. This is due to the plugin not properly validating a user's identity prior to claiming a business when using the claim_business AJAX action. This makes it possible for unauthenticated attackers to logi
nvd
CVE-2025-2470P2CRITICALCVSS 9.8≤ 5.12025-04-25
CVE-2025-2470 [CRITICAL] CWE-266 CVE-2025-2470: The Service Finder Bookings plugin for WordPress, used by the Service Finder - Directory and Job Boa The Service Finder Bookings plugin for WordPress, used by the Service Finder - Directory and Job Board WordPress Theme, is vulnerable to privilege escalation in all versions up to, and including, 5.1. This is due to a lack of restriction on user role in the 'nsl_registration_store_extra_input' function. This makes it possible for unauthenticated att
nvd
CVE-2025-6574P2HIGHCVSS 8.8fixed in 6.12025-11-01
CVE-2025-6574 [HIGH] CWE-639 CVE-2025-6574: The Service Finder Bookings plugin for WordPress is vulnerable to privilege escalation via account t The Service Finder Bookings plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and excluding, 6.1. This is due to the plugin not properly validating a user's identity prior to updating their details like email. This makes it possible for authenticated attackers, with subscriber-level access and above,
nvd
CVE-2025-5949P2HIGHCVSS 8.8≤ 6.02025-11-01
CVE-2025-5949 [HIGH] CWE-639 CVE-2025-5949: The Service Finder Bookings plugin for WordPress is vulnerable to privilege escalation via account t The Service Finder Bookings plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 6.0. This is due to the plugin not properly validating a user's identity prior to processing a password change request. This makes it possible for authenticated attackers with subscriber access or higher to re
nvd
Aonetheme Service Finder Bookings vulnerabilities | cvebase