CVE-2025-63001
- EPSS 0.04%
- Veröffentlicht 31.12.2025 14:56:30
- Zuletzt bearbeitet 20.01.2026 15:18:20
Missing Authorization vulnerability in nicdark Hotel Booking allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Hotel Booking: from n/a through 3.8.
CVE-2025-53259
- EPSS 0.13%
- Veröffentlicht 27.06.2025 13:21:06
- Zuletzt bearbeitet 30.06.2025 18:38:48
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in nicdark Hotel Booking allows PHP Local File Inclusion. This issue affects Hotel Booking: from n/a through 3.7.
CVE-2025-47498
- EPSS 0.42%
- Veröffentlicht 07.05.2025 14:19:55
- Zuletzt bearbeitet 08.05.2025 14:39:18
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in nicdark Hotel Booking allows PHP Local File Inclusion. This issue affects Hotel Booking: from n/a through 3.6.
CVE-2025-39526
- EPSS 0.55%
- Veröffentlicht 17.04.2025 15:46:55
- Zuletzt bearbeitet 17.04.2025 20:21:05
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in nicdark Hotel Booking allows PHP Local File Inclusion. This issue affects Hotel Booking: from n/a through 3.6.
CVE-2022-29443
- EPSS 0.16%
- Veröffentlicht 15.06.2022 19:15:10
- Zuletzt bearbeitet 21.11.2024 06:59:05
Multiple Authenticated (contributor or higher user role) Stored Cross-Site Scripting (XSS) vulnerabilities in Nicdark's Hotel Booking plugin <= 3.0 at WordPress.