Service Finder Bookings - Authentication Bypass
CVE-2025-5947
Verified
Description
Service Finder Bookings WordPress plugin <= 6.0 contains a privilege escalation caused by improper validation of user cookie in service_finder_switch_back() function, letting unauthenticated attackers login as any user including admins.
Severity
Critical
CVSS Score
9.8
Exploit Probability
4%
Affected Product
service-finder-bookings
Published Date
March 23, 2026
Template Author
sedat4ras
CVE-2025-5947.yaml
9.8Score
CVSS Metrics
CVSS Vector:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVE ID:
cve-2025-5947
CWE ID:
cwe-639
References
https://patchstack.com/database/wordpress/plugin/sf-booking/vulnerability/wordpress-service-finder-bookings-plugin-6-0-authentication-bypass-via-user-switch-cookie-vulnerabilityhttps://github.com/advisories/GHSA-x2xx-4qhp-2vqxhttps://github.com/M4rgs/CVE-2025-5947_Exploithttps://nvd.nist.gov/vuln/detail/CVE-2025-5947
Remediation Steps
Update to the latest version beyond 6.0.