Known Vulnerabilities for Booking Manager by Unknown
Listed below are 10 of the newest known vulnerabilities associated with "Booking Manager" by "Unknown".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-93928 json | Authentication Bypass Using an Alternate Path or Channel vulnerability in Magepeople inc. Taxi Booking Manager for WooCommerc... | Not Provided | 2026-09-22 | 2026-09-22 |
| CVE-2026-91077 json | The Event Booking Manager for WooCommerce WordPress plugin before 5.7.3 does not restrict its event listing query to events ... | Not Provided | 2026-09-23 | 2026-09-23 |
| CVE-2026-91025 json | The Booking Manager WordPress plugin before 2.1.21 does not verify that a request to modify a user's Booking Manager WordPr... | Not Provided | 2026-09-23 | 2026-09-23 |
| CVE-2026-91024 json | The Booking Manager WordPress plugin before 2.1.21 does not sanitize and escape values taken from a fetched external iCalend... | Not Provided | 2026-09-23 | 2026-09-23 |
| CVE-2026-91019 json | The Event Booking Manager for WooCommerce WordPress plugin before 5.6.0 does not restrict who can view its stored payment ga... | Not Provided | 2026-09-17 | 2026-09-17 |
| CVE-2026-91008 json | The Event Booking Manager for WooCommerce WordPress plugin before 5.3.8 does not perform an ownership or authorization check... | Not Provided | 2026-09-17 | 2026-09-17 |
| CVE-2026-85303 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Magepeople inc. Booking... | Not Provided | 2026-09-03 | 2026-09-03 |
| CVE-2026-84045 json | The E-cab Taxi Booking Manager for Woocommerce WordPress plugin before 2.0.5 does not validate a client-supplied trip distanc... | Not Provided | 2026-09-04 | 2026-09-04 |
| CVE-2026-81762 json | Subscriber Broken Access Control in Booking and Rental Manager <= 2.7.6 versions. | Not Provided | 2026-08-31 | 2026-09-01 |
| CVE-2026-78258 json | Unauthenticated Broken Access Control in Booking and Rental Manager <= 2.7.5 versions. | Not Provided | 2026-08-24 | 2026-08-24 |