Known vulnerabilities in the Wp Hotel Booking plugin
18 security advisories have been published for the Wp Hotel Booking plugin. Each entry below states what an attacker can do, what privilege they need, and the version the issue was fixed in.
- Wp Hotel Booking - Security Vulnerability (CVE-2026-15152) MEDIUM
- Wp Hotel Booking - Security Vulnerability (CVE-2026-15149) MEDIUM
- Wp Hotel Booking - SQL Injection (CVE-2026-15153) MEDIUM
- Wp Hotel Booking - Cross-Site Scripting (XSS) (CVE-2026-15464) MEDIUM
- Wp Hotel Booking - Cross-Site Scripting (XSS) (CVE-2026-15094) MEDIUM
- Wp Hotel Booking - Security Vulnerability (CVE-2026-11901) MEDIUM
- Wp Hotel Booking - Cross-Site Scripting (XSS) (CVE-2026-11392) MEDIUM
- Wp Hotel Booking - Broken Access Control (CVE-2026-9822) MEDIUM
- Wp Hotel Booking - Information Disclosure (CVE-2025-14075) MEDIUM
- Wp Hotel Booking - Security Vulnerability (CVE-2025-8942) CRITICAL
- Wp Hotel Booking - Broken Access Control (CVE-2024-13447) MEDIUM
- Wp Hotel Booking - Broken Access Control (CVE-2024-12370) MEDIUM
- Wp Hotel Booking - Remote Code Execution (CVE-2024-7855) HIGH
- Wp Hotel Booking - SQL Injection (CVE-2024-3605) CRITICAL
- Wp Hotel Booking - Cross-Site Request Forgery (CSRF) (CVE-2023-5652) CRITICAL
- Wp Hotel Booking - Security Vulnerability (CVE-2023-5799) MEDIUM
- Wp Hotel Booking - Cross-Site Request Forgery (CSRF) (CVE-2023-5651) MEDIUM
- Wp Hotel Booking - Cross-Site Request Forgery (CSRF) (CVE-2021-36852) MEDIUM