SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-59541

HIGH · CVSS 8.8 EPSS 0.32%

Source: NVD + CISA KEV + EPSS · Published 2026-07-23 · Last synced 2026-08-22

CyberRota Analysis

AI-Generated

The vulnerability in WP BASE Booking versions up to 6.3.1 allows subscribers to escalate their privileges, potentially gaining unauthorized access to sensitive functionalities or data. This high-severity issue poses a significant risk to any organization using affected versions of the plugin, particularly those with user-generated content or subscription-based models. Organizations should prioritize patching or upgrading to mitigate the risk of exploitation.

CVE
CVE-2026-59541
Severity
HIGH
CVSS
8.8
EPSS
0.32%

Original NVD Description

Subscriber Privilege Escalation in WP BASE Booking <= 6.3.1 versions.