WordPress security by component
Five Star Restaurant Reservations
Plugin description
Five Star Restaurant Reservations is a WordPress component with 9 published CVE records in this archive. The latest tracked vulnerability was published Jun 25, 2026; the highest CVE/CNA score is 8.6.
Plugin slug:
restaurant-reservationsLatest vulnerability
CVE-2026-54830: Five Star Restaurant Reservations: A security weakness
Five Star Restaurant Reservations is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation. The published affected range is n/a through 2.7.19.
| Safe version |
|
||
|---|---|---|---|
| Jun 25, 2026 |
CVE-2026-54830
Five Star Restaurant Reservations: A security weakness
Five Star Restaurant Reservations is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation. The published affected range is n/a through 2.7.19.
|
2.7.20 |
CVE7.5
NVDPending
|
| Jun 02, 2026 |
CVE-2026-42670
Five Star Restaurant Reservations: A security weakness
Five Star Restaurant Reservations is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation. The published affected range is n/a through 2.7.14.
|
2.7.15 |
CVE7.5
NVDPending
|
| Apr 30, 2026 |
CVE-2026-6498
Five Star Restaurant Reservations – WordPress Booking Plugin: A security weakness
Five Star Restaurant Reservations – WordPress Booking Plugin is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation. The published affected range is <= 2.7.16.
|
> 2.7.16 |
CVE5.3
NVDPending
|
| Mar 25, 2026 |
CVE-2026-25327
Five Star Restaurant Reservations: A security weakness
Five Star Restaurant Reservations is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation. The published affected range is <= 2.7.9.
|
2.7.10 |
CVE6.5
NVDPending
|
| Jan 05, 2026 |
CVE-2025-68044
Five Star Restaurant Reservations: A security weakness
Five Star Restaurant Reservations is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE8.6
NVDPending
|
| Dec 24, 2025 |
CVE-2025-68601
Five Star Restaurant Reservations: Cross-site request forgery
Five Star Restaurant Reservations is affected by cross-site request forgery. Exposure depends on how the affected operation is made reachable by the site. Exploitation relies on a signed-in privileged user submitting an attacker-controlled request.
|
See mitigation notes |
CVE5.4
NVDPending
|
| Mar 27, 2025 |
CVE-2025-30861
Five Star Restaurant Reservations: A security weakness
Five Star Restaurant Reservations is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE4.9
NVDPending
|
| Apr 29, 2024 |
CVE-2024-33596
Five Star Restaurant Reservations: A security weakness
Five Star Restaurant Reservations is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE5.3
NVDPending
|
| Jul 25, 2023 |
CVE-2023-34017
Restaurant Reservations: Cross-site scripting
Restaurant Reservations is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVE7.1
NVD6.1
|