Medium severity4.3NVD Advisory· Published Feb 2, 2026· Updated Apr 15, 2026
CVE-2026-0658
CVE-2026-0658
Description
The Five Star Restaurant Reservations WordPress plugin before 2.7.9 does not have CSRF checks in some bulk actions, which could allow attackers to make logged in admins perform unwanted actions, such as deleting bookings via CSRF attacks.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <2.7.9
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.