CVE-2026-9231

CVE-2026-9231 published: The WP Travel Engine – Tour Booking Plugin – Tour Operator Software plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 6.8.0 via the wte_get_template function. This makes it possible for authenticated attackers,...

View full NVD advisory → ← Back to CVE watch