Medium 5.3 Closed
2025-10-03< 1.5.5
WordPress DiveBook plugin <= 1.1.4 - Unauthenticated SQL Injection (SQLi) vulnerability
Minimum safe version
1.5.5
Update to 1.5.5 or later to address 3 fixable vulnerabilities
WordPress DiveBook plugin <= 1.1.4 - Unauthenticated SQL Injection (SQLi) vulnerability
WordPress DiveBook plugin <= 1.1.4 - Improper Authorisation Check vulnerability
WordPress DiveBook plugin <= 1.1.4 - Unauthenticated Reflected Cross-Site Scripting (XSS) vulnerability