Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
5.4

Booked allows attackers to bypass login security

CVE-2026-22341
Summary

A security issue in Booked allows attackers to potentially access the system without a valid login. This affects Booked versions up to 3.0.0. It's essential to update to the latest version to prevent unauthorized access.

Original title
Authentication Bypass Using an Alternate Path or Channel vulnerability in Case-Themes Booked booked allows Authentication Abuse.This issue affects Booked: from n/a through <= 3.0.0.
Original description
Authentication Bypass Using an Alternate Path or Channel vulnerability in Case-Themes Booked booked allows Authentication Abuse.This issue affects Booked: from n/a through <= 3.0.0.
nvd CVSS3.1 5.4
Vulnerability type
CWE-288 Authentication Bypass Using Alternate Path
Published: 20 Feb 2026 · Updated: 12 Mar 2026 · First seen: 6 Mar 2026