Feed/CVE-2026-15229
CVE-2026-15229MEDIUMCVSS 5.3

CVE-2026-15229

Published Aug 10, 2026·Updated Aug 12, 2026

NVD Description

The Pinpoint Booking System WordPress plugin through 2.9.9.6.9 does not validate the booking price on the server side, allowing unauthenticated users to create bookings at an arbitrary price (including zero) and, by selecting a specific payment method, obtain an instantly-approved reservation.

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free