CRITICAL 9.3 CVE-2026-103352 Published 5 Oct 2026

WP BASE Booking Plugin Blind SQL Injection Vulnerability

Worried this affects your website?

An SQL Injection vulnerability has been discovered in WP BASE Booking, a WordPress plugin for managing appointments, services, and events. The flaw allows blind SQL injection attacks.

Affected versions include all releases from n/a through 6.4.0.

Reference: CVE-2026-103352 on NVD

← Back to Security News