VYPR

Vikbooking Hotel Booking Engine \& Pms

by WordPress

Source repositories

CVEs (26)

  • CVE-2026-15401HigJul 24, 2026
    risk 0.00cvss 7.2epss 0.00

    The VikBooking Hotel Booking Engine & PMS plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'vbfX' parameter in all versions up to, and including, 1.8.13 due to insufficient input sanitization and output escaping. This makes it possible for…

  • CVE-2026-15346MedJul 24, 2026
    risk 0.00cvss 6.1epss 0.00

    The VikBooking Hotel Booking Engine & PMS plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'category_id' parameter in all versions up to, and including, 1.8.13 due to insufficient input sanitization and output escaping. This makes it possible for…

  • CVE-2026-6820HigJul 8, 2026
    risk 0.00cvss 7.2epss 0.00

    The VikBooking Hotel Booking Engine & PMS plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'email' parameter in all versions up to, and including, 1.8.8 due to insufficient input sanitization and output escaping. This makes it possible for…

  • CVE-2026-6818HigJul 8, 2026
    risk 0.00cvss 7.2epss 0.00

    The VikBooking Hotel Booking Engine & PMS plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'special_requests' parameter in all versions up to, and including, 1.8.8 due to insufficient input sanitization and output escaping. This makes it possible for…

  • CVE-2026-57723HigJul 1, 2026
    risk 0.00cvss 7.4epss 0.00

    Cross-Site Request Forgery (CSRF) vulnerability in e4jvikwp VikBooking Hotel Booking Engine & PMS allows Path Traversal. This issue affects VikBooking Hotel Booking Engine & PMS: from n/a through 1.8.12.

  • CVE-2026-12754MedJul 1, 2026
    risk 0.00cvss 6.1epss 0.00

    The VikBooking Hotel Booking Engine & PMS plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'layoutstyle' parameter in all versions up to, and including, 1.8.12 due to insufficient input sanitization and output escaping. This makes it possible for…

Page 2 of 2