cleantalk
Vulnerabilities and Security Researches

VikBooking Hotel Booking Engine & PMS, CVE-2026-42737

CVE, Research URL

CVE-2026-42737

Published on
May 27, 2026
Research Description
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in e4jvikwp VikBooking Hotel Booking Engine & PMS vikbooking allows Path Traversal.This issue affects VikBooking Hotel Booking Engine & PMS: from n/a through <= 1.8.9.
Affected versions
max 1.8.10.
Status
vulnerable