/Vulnerability Library

Service Finder Bookings - Authentication Bypass

CVE-2025-5947
Verified

Description

Service Finder Bookings WordPress plugin <= 6.0 contains a privilege escalation caused by improper validation of user cookie in service_finder_switch_back() function, letting unauthenticated attackers login as any user including admins.

Severity

Critical

CVSS Score

9.8

Exploit Probability

4%

Affected Product

service-finder-bookings

Published Date

March 23, 2026

Template Author

sedat4ras

CVE-2025-5947.yaml
9.8Score

CVSS Metrics

CVSS Vector:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVE ID:
cve-2025-5947
CWE ID:
cwe-639

References

https://patchstack.com/database/wordpress/plugin/sf-booking/vulnerability/wordpress-service-finder-bookings-plugin-6-0-authentication-bypass-via-user-switch-cookie-vulnerabilityhttps://github.com/advisories/GHSA-x2xx-4qhp-2vqxhttps://github.com/M4rgs/CVE-2025-5947_Exploithttps://nvd.nist.gov/vuln/detail/CVE-2025-5947

Remediation Steps

Update to the latest version beyond 6.0.