Unrated severityNVD Advisory· Published Aug 10, 2026
CVE-2026-15229
CVE-2026-15229
Description
The Pinpoint Booking System WordPress plugin through 2.9.9.6.9 does not validate the booking price on the server side, allowing unauthenticated users to create bookings at an arbitrary price (including zero) and, by selecting a specific payment method, obtain an instantly-approved reservation.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <=2.9.9.6.9
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.