Missing Authorization vulnerability in Drupal Bookable Calendar allows Forceful Browsing.This issue affects Bookable Calendar: from 0.0.0 before 2.2.13.
CVSS
No CVSS.
References
| Link | Resource |
|---|---|
| https://www.drupal.org/sa-contrib-2025-070 | Third Party Advisory |
Configurations
History
10 Jul 2025, 12:16
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://www.drupal.org/sa-contrib-2025-070 - Third Party Advisory | |
| First Time |
Joshfabean bookable Calendar
Joshfabean |
|
| CPE | cpe:2.3:a:joshfabean:bookable_calendar:*:*:*:*:*:drupal:*:* |
13 Jun 2025, 16:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-06-13 16:15
Updated : 2025-07-10 12:16
NVD link : CVE-2025-48916
Mitre link : CVE-2025-48916
JSON object : View
Products Affected
joshfabean
- bookable_calendar
CWE
No CWE.
