CVE-2026-88825 | iGMS Direct Booking Plugin up to 1.x on WordPress Widget Appearance Settings cross site scripting

SecurityVulns

A vulnerability was found in iGMS Direct Booking Plugin up to 1.x on WordPress and classified as problematic. Affected is an unknown function of the component Widget Appearance Settings. Executing a manipulation can lead to cross site scripting.

This vulnerability is tracked as CVE-2026-88825. The attack can be launched remotely. No exploit exists.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More