Missing Authorization Vulnerability in Salon Booking Pro by WordPress
CVE-2025-32295
4.3MEDIUM
What is CVE-2025-32295?
A missing authorization vulnerability in Salon Booking Pro allows attackers to exploit incorrectly configured access control security levels. This weakness permits unauthorized users to gain access to functionalities and data they should not be able to access, potentially leading to severe ramifications for user privacy and data integrity. The issue impacts versions of Salon Booking Pro ranging from n/a to 10.10.2.
Affected Version(s)
Salon Booking Pro <= 10.10.2