Access Control Flaw in TrueBooker by Themtechmount
CVE-2025-67581
5.3MEDIUM
What is CVE-2025-67581?
The TrueBooker appointment booking plugin by Themtechmount is affected by a missing authorization vulnerability. This flaw allows unauthorized users to exploit improperly configured access control settings, leading to potential data leaks and unauthorized access to sensitive information. The issue specifically impacts versions of TrueBooker up to and including 1.1.0. Users should ensure they are running the latest version and review their access configurations to mitigate potential risks.
Affected Version(s)
TrueBooker 0 <= 1.1.0