Medium 5.3
2026-01-23< 11.1.1
CVE-2026-24568
Minimum safe version
11.1.1
Update to 11.1.1 or later to address 11 fixable vulnerabilities
CVE-2026-24568
CVE-2025-22691
CVE-2024-12067
CVE-2024-53813
CVE-2024-44039
CVE-2023-47224
WordPress WP Travel Plugin <= 4.1.4 is vulnerable to Cross Site Scripting (XSS)
CVE-2021-4389
CVE-2021-4342
Various Affected Software (Various Versions) - Cross-Site Request Forgery Bypass
WordPress WP Travel plugin <= 4.4.6 - Cross-Site Request Forgery (CSRF) vulnerability