CVE-2026-95684 | e4jvikwp VikBooking Hotel Booking Engine & PMS Plugin up to 1.8.15 on WordPress attachments[name] cross site scripting
A vulnerability identified as problematic has been detected in e4jvikwp VikBooking Hotel Booking Engine & PMS Plugin up to 1.8.15 on WordPress. Affected by this issue is some unknown functionality. This manipulation of the argument attachments[name] causes cross site scripting.
This vulnerability is handled as CVE-2026-95684. The attack can be initiated remotely. There is not any exploit available.VulDB Recent EntriesRead More