Back to CVE List

CVE-2026-15153

Vulnerability Description

The WP Hotel Booking WordPress plugin before 2.3.2 does not sanitise and escape a search parameter on an administrative listing before using it in a SQL query, allowing users holding the WP Hotel Booking WordPress plugin before 2.3.2's booking-management roles to perform SQL injection attacks.

Vulnerability Details

Published Date
Last Modified
Source
NVD
Vendor
Unknown
Product
WP Hotel Booking

External References

Discussion (0)

Add Comment

No comments yet. Be the first!