CRITICAL
9.3 CVE-2026-103352 Published 5 Oct 2026
WP BASE Booking Plugin Blind SQL Injection Vulnerability
Worried this affects your website?
An SQL Injection vulnerability has been discovered in WP BASE Booking, a WordPress plugin for managing appointments, services, and events. The flaw allows blind SQL injection attacks.
Affected versions include all releases from n/a through 6.4.0.
Reference: CVE-2026-103352 on NVD
← Back to Security News