CVE-2026-15289 | wpdevart Booking Calendar Appointment Booking System Plugin SQL Query sql injection
A vulnerability identified as critical has been detected in wpdevart Booking Calendar Appointment Booking System Plugin up to 3.2.17. Impacted is an unknown function of the component SQL Query Handler. The manipulation of the argument wpdevart_id leads to sql injection.
This vulnerability is listed as CVE-2026-15289. The attack may be initiated remotely. There is no available exploit.VulDB Recent EntriesRead More