CVE-2025-12841
12.12.2025, 11:15
The Bookit WordPress plugin before 2.5.1 has a publicly accessible REST endpoint that allows unauthenticated update of the plugins Stripe payment options.Enginsight
Awaiting analysis
This vulnerability is currently awaiting analysis.