CVE-2026-87115 | e4jvikwp VikAppointments Services Booking Calendar Plugin up to 1.2.21 on WordPress Path Validation extract path traversal

SecurityVulns

A vulnerability was found in e4jvikwp VikAppointments Services Booking Calendar Plugin up to 1.2.21 on WordPress. It has been declared as critical. Affected by this vulnerability is the function extract of the component Path Validation. Executing a manipulation can lead to path traversal.

The identification of this vulnerability is CVE-2026-87115. The attack may be launched remotely. There is no exploit available.VulDB Recent EntriesRead More