CVE-2026-15464 | ThimPress WP Hotel Booking Plugin up to 2.3.2 on WordPress Shortcode widget_search cross site scripting

SecurityVulns

A vulnerability, which was classified as problematic, has been found in ThimPress WP Hotel Booking Plugin up to 2.3.2 on WordPress. The impacted element is an unknown function of the component Shortcode Handler. This manipulation of the argument widget_search causes cross site scripting.

This vulnerability appears as CVE-2026-15464. The attack may be initiated remotely. There is no available exploit.VulDB Recent EntriesRead More