Filtered by vendor Nicdark Subscriptions
Filtered by product Hotel Booking Subscriptions
Total 4 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-53259 2 Nicdark, Wordpress 2 Hotel Booking, Wordpress 2025-07-06 7.5 High
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in nicdark Hotel Booking allows PHP Local File Inclusion. This issue affects Hotel Booking: from n/a through 3.7.
CVE-2025-39526 1 Nicdark 1 Hotel Booking 2025-06-24 8.1 High
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in nicdark Hotel Booking allows PHP Local File Inclusion. This issue affects Hotel Booking: from n/a through 3.6.
CVE-2025-47498 1 Nicdark 1 Hotel Booking 2025-05-08 7.5 High
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in nicdark Hotel Booking allows PHP Local File Inclusion. This issue affects Hotel Booking: from n/a through 3.6.
CVE-2022-29443 1 Nicdark 1 Hotel Booking 2025-02-20 4.1 Medium
Multiple Authenticated (contributor or higher user role) Stored Cross-Site Scripting (XSS) vulnerabilities in Nicdark's Hotel Booking plugin <= 3.0 at WordPress.