VYPR

Dharma Booking

by WordPress

CVEs (1)

  • CVE-2016-20079MedJun 15, 2026
    risk 0.40cvss 6.2epss

    WordPress Dharma Booking 2.28.3 and earlier contains a local file inclusion vulnerability that allows unauthenticated attackers to include arbitrary files by manipulating the gateway parameter. Attackers can supply file paths with directory traversal sequences or null byte…