Vulnerability index

Browse CVEs

17 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2025-32220 Missing Authorization vulnerability in Dimitri Grassi Salon booking system salon-booking-system allows Exploiting Incorrectly Configured Access Contr… Salon Booking System after 10.11 Fix from $1,9502025-04-04 HIGH 7.2 CVE-2025-31560 Incorrect Privilege Assignment vulnerability in Dimitri Grassi Salon booking system salon-booking-system allows Privilege Escalation.This issue affec… Salon Booking System after 10.11 Fix from $1,9502025-04-01 HIGH 8.8 CVE-2024-47316 Authorization Bypass Through User-Controlled Key vulnerability in Dimitri Grassi Salon booking system salon-booking-system.This issue affects Salon b… Salon Booking System 10.9.1+ Fix from $1,9502024-10-05 HIGH 7.2 CVE-2024-39658 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Salon Booking System Salon booking system allow… Salon Booking System 10.8+ Fix from $1,9502024-08-29 MEDIUM 6.1 CVE-2024-43280 URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Salon Booking System Salon booking system.This issue affects Salon booking syste… Salon Booking System 10.9+ Fix from $1,6002024-08-19 CRITICAL 9.1 CVE-2024-37231 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Salon Booking System Salon booking system allows File… Salon Booking System 10.0+ Fix from $2,3002024-06-24 CRITICAL 9.8 CVE-2024-3229 The Salon booking system plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the SLN_Action_Ajax_Impo… Salon Booking System 10.3+ Fix from $2,3002024-06-19 MEDIUM 5.4 CVE-2024-4468 The Salon booking system plugin for WordPress is vulnerable to unauthorized access and modification of data due to a missing capability check on seve… Salon Booking System 10.0+ Fix from $1,6002024-06-08 CRITICAL 9.1 CVE-2024-4442 The Salon booking system plugin for WordPress is vulnerable to arbitrary file deletion in all versions up to, and including, 9.8. This is due to the … Salon Booking System 10.0+ Fix from $2,3002024-05-21 HIGH 7.2 CVE-2023-48319 Improper Privilege Management vulnerability in Salon Booking System Salon booking system allows Privilege Escalation.This issue affects Salon booking… Salon Booking System 8.7+ Fix from $1,9502024-05-17 MEDIUM 6.3 CVE-2024-2603 The Salon booking system WordPress plugin through 9.6.5 does not sanitise and escape some of its settings, which could allow high privilege users suc… Salon Booking System 9.6.6+ Fix from $1,6002024-04-26 MEDIUM 5.7 CVE-2024-2101 The Salon booking system WordPress plugin before 9.6.3 does not properly sanitize and escape the 'Mobile Phone' field when booking an appointment, al… Salon Booking System 9.6.3+ Fix from $1,6002024-04-17 CRITICAL 9.8 CVE-2024-30510 Unrestricted Upload of File with Dangerous Type vulnerability in Salon Booking System Salon booking system.This issue affects Salon booking system: f… Salon Booking System 9.5.1+ Fix from $2,3002024-03-29 MEDIUM 6.1 CVE-2022-43487 Cross-site scripting vulnerability in Salon booking system versions prior to 7.9 allows a remote unauthenticated attacker to inject an arbitrary scri… Salon Booking System 7.9+ Fix from $1,6002022-12-05 HIGH 7.5 CVE-2022-0920 The Salon booking system Free and Pro WordPress plugins before 7.6.3 do not have proper authorisation in some of its endpoints, which could allow cus… Salon Booking System 7.6.3+ Fix from $1,9502022-04-11 MEDIUM 5.3 CVE-2022-0919 The Salon booking system Free and pro WordPress plugins before 7.6.3 do not have proper authorisation when searching bookings, allowing any unauthent… Salon Booking System 7.6.3+ Fix from $1,6002022-04-11 MEDIUM 6.1 CVE-2021-24429 The Salon booking system WordPress plugin before 6.3.1 does not properly sanitise and escape the First Name field when booking an appointment, allowi… Salon Booking System 6.3.1+ Fix from $1,6002021-07-12