Freetobook Responsive Widget
Freetobook Responsive Widget has one disclosed vulnerability in the WordSec catalog, all reported in 2025; it is fixed as of September 2026. Their average CVSS score is 4.3, and the most serious one scores 4.3 out of 10.
The most common weakness is Cross-Site Request Forgery (CSRF), behind 1 of the records (100%).
The one issue recorded for Freetobook Responsive Widget has a vendor fix available, so running the current release closes it.
All of these findings were reported by Nguyen Xuan Chien. Freetobook Responsive Widget is installed on roughly 500 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 6.8.8.
CVE-2025-32273Freetobook Responsive Widget <= 1.1 - Cross-Site Request Forgery
Read the full analysisVulnerability Records
Freetobook Responsive Widget
Author
freetobook
The freetobook plugin is ideal for accommodation providers looking to add online booking functionality to their WordPress website. To find out more and register for an account simply visit our website. Please be aware that the freetobook plugin is only suitable for accommodation providers, do not register if you are not an accommodation provider.
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C