cleantalk
Vulnerabilities and Security Researches

WP Travel – Best Travel Booking WordPress Plugin, Tour Management Engine, CVE-2025-22691

CVE, Research URL

CVE-2025-22691

Published on
Feb 03, 2025
Research Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WP Travel WP Travel allows SQL Injection. This issue affects WP Travel: from n/a through 10.1.0.
Affected versions
max 10.1.4.
Status
vulnerable