CVE-2026-15153
Vulnerability Description
The WP Hotel Booking WordPress plugin before 2.3.2 does not sanitise and escape a search parameter on an administrative listing before using it in a SQL query, allowing users holding the WP Hotel Booking WordPress plugin before 2.3.2's booking-management roles to perform SQL injection attacks.
Vulnerability Details
Published Date
Last Modified
Source
NVD
Vendor
Unknown
Product
WP Hotel Booking
Discussion (0)
Add Comment
No comments yet. Be the first!