Freetobook Responsive Widget

Freetobook Responsive Widget has one disclosed vulnerability in the WordSec catalog, all reported in 2025; it is fixed as of September 2026. Their average CVSS score is 4.3, and the most serious one scores 4.3 out of 10.

The most common weakness is Cross-Site Request Forgery (CSRF), behind 1 of the records (100%).

The one issue recorded for Freetobook Responsive Widget has a vendor fix available, so running the current release closes it.

All of these findings were reported by Nguyen Xuan Chien. Freetobook Responsive Widget is installed on roughly 500 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 6.8.8.

Strategic Overview

Avg CVSSMedium
4.3/ 10
Patch Coverage100%
Open

0

Fixed

1

Get automatic notifications for all Freetobook Responsive Widget vulnerabilities before they are exploited.

Highest severity on recordCVSS 4.3CVE-2025-32273

Freetobook Responsive Widget <= 1.1 - Cross-Site Request Forgery

Read the full analysis

Vulnerability Records

1 records
Plugin Profile
Latestv1.1.2

Freetobook Responsive Widget

freetobook

Author

freetobook

3.0(2)
60/100
Last Updated
2025-11-13 (10mo ago)
Active Installs
500+
Downloads
6,383
Requires WP
3.0+
Requires PHP
5.6+
Tested up to
WP 6.8.8
Created
2021-10-04 (5y ago)

The freetobook plugin is ideal for accommodation providers looking to add online booking functionality to their WordPress website. To find out more and register for an account simply visit our website. Please be aware that the freetobook plugin is only suitable for accommodation providers, do not register if you are not an accommodation provider.

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C