4.3
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
Description
The Five Star Restaurant Reservations WordPress plugin before 2.7.9 does not have CSRF checks in some bulk actions, which could allow attackers to make logged in admins perform unwanted actions, such as deleting bookings via CSRF attacks.
Basic Information
ID
CVE-2026-0658
Source
WPScan
Published
Feb 2, 2026 at 06:00
Modified
Feb 2, 2026 at 14:53
Affected Product
Vendor
Unknown
Product
Five Star Restaurant Reservations
Affected Versions
Unknown Five Star Restaurant Reservations 0