← WordPress Vulnerabilities
WordPress security by component

Hotel Booking Lite

Hotel Booking Lite is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Dec 26, 2023; the highest CVE/CNA score is 9.8.

Plugin slug: hotel-booking-lite

CVE-2023-5991: Hotel Booking Lite: Arbitrary file deletion

Hotel Booking Lite is affected by arbitrary file deletion. The vulnerable path is reachable without authentication. A successful request can remove files outside the intended scope and may make the site unavailable.

PublishedDec 26, 2023
Safe version guidanceSee mitigation notes
Safe version
Dec 26, 2023 CVE-2023-5991
Hotel Booking Lite: Arbitrary file deletion
Hotel Booking Lite is affected by arbitrary file deletion. The vulnerable path is reachable without authentication. A successful request can remove files outside the intended scope and may make the site unavailable.
See mitigation notes
CVE9.8
NVD9.8