CVE-2026-39678
Pinpoint Booking System – Version 2
Minimum safe version
2.9.9.6.0
Update to 2.9.9.6.0 or later to address 16 fixable vulnerabilities
Pinpoint Booking System – #1 WordPress Booking Plugin <= 2.9.9.5.4 - Authenticated (Subscriber+) SQL Injection
CVE-2024-54252
CVE-2024-53815
CVE-2024-49304
WordPress Pinpoint Booking System Plugin <= 2.9.9.5.0 is vulnerable to SQL Injection
CVE-2024-3636
CVE-2023-45270
CVE-2023-38520
CVE-2023-25062
CVE-2023-0220
Pinpoint Booking System – #1 WordPress Booking Plugin <= 1.3.1 - Reflected Cross-Site Scripting
Booking System - Reflected Cross-Site Scripting (XSS)
WordPress Booking System Plugin <= 2.0 - Blind SQL Injection
WordPress Booking System Plugin <= 1.3 - Cross Site Scripting
WordPress Pinpoint Booking System Plugin <= 1.3 is vulnerable to SQL Injection
CVE-2015-9460