Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in wpWax Directorist Booking allows Blind SQL Injection.
This issue affects Directorist Booking: from n/a through 3.0.3.
Metrics
Affected Vendors & Products
References
History
Fri, 26 Jun 2026 08:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wordpress
Wordpress wordpress Wpwax Wpwax directorist |
|
| Vendors & Products |
Wordpress
Wordpress wordpress Wpwax Wpwax directorist |
Wed, 17 Jun 2026 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 16 Jun 2026 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in wpWax Directorist Booking allows Blind SQL Injection. This issue affects Directorist Booking: from n/a through 3.0.3. | |
| Title | WordPress Directorist Booking plugin <= 3.0.3 - SQL Injection vulnerability | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published: 2026-06-16T21:23:19.120Z
Updated: 2026-06-17T10:36:08.850Z
Reserved: 2026-05-27T10:27:01.186Z
Link: CVE-2026-49073
Updated: 2026-06-17T10:36:04.158Z
No data.
No data.