The Online Scheduling and Appointment Booking System WordPress plugin before 28.2 does not verify that the requester owns the AI booking-assistant conversation named in its unauthenticated conversation actions, allowing any unauthenticated visitor to read another visitor's assistant messages and to inject messages into their in-progress conversation.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Sat, 19 Sep 2026 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The Online Scheduling and Appointment Booking System WordPress plugin before 28.2 does not verify that the requester owns the AI booking-assistant conversation named in its unauthenticated conversation actions, allowing any unauthenticated visitor to read another visitor's assistant messages and to inject messages into their in-progress conversation. | |
| Title | Bookly < 28.2 - Unauthenticated AI Assistant Conversation Disclosure and Message Injection via IDOR | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2026-09-19T06:00:17.100Z
Reserved: 2026-09-15T08:36:37.677Z
Link: CVE-2026-91847
No data.
Status : Received
Published: 2026-09-19T07:16:33.480
Modified: 2026-09-19T07:16:33.480
Link: CVE-2026-91847
No data.
OpenCVE Enrichment
No data.
Weaknesses
No weakness.