Pricing
Case studies
Login
Start trial
BookIt
StellarWP
Developer
2.5.4
Latest version
5,000
Installations
No date
Last updated
WordPress Plugin
Active VDP
Report vulnerability
Vulnerabilities
Security Policy
Security Contributors
Vulnerability history
0 present
9 patched
4 Mitigation rules
Unauthenticated Settings Update vulnerability
< 2.5.1
31/12/2025
Missing Authorization to Unauthenticated Stripe Connection vulnerability
<= 2.5.0
12/11/2025
Price Bypass Vulnerability vulnerability
<= 2.4.0
31/01/2024
SQL Injection vulnerability
<= 2.4.3
21/12/2023
Reflected Cross Site Scripting (XSS) vulnerability
< 2.4.0
18/07/2023
Authentication Bypass Vulnerability
<= 2.3.7
20/06/2023
Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability
< 2.2.9
28/02/2022
Sensitive Information Disclosure vulnerability
< 2.2.9
28/02/2022
Cross-Site Request Forgery (CSRF) vulnerability
<= 2.1.5
30/06/2021