Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
4358 articles · 196341 vulns · 36/41 feeds (7d)
← Back to list
6.5
CVE-2026-57347EXPLOITED
jetmonsters · hotel booking lite

WordPress Hotel Booking Lite plugin <= 6.0.3 - Sensitive Data Exposure vulnerability

Description

Subscriber Sensitive Data Exposure in Hotel Booking Lite <= 6.0.3 versions.

Affected Products

VendorProductVersions
jetmonstershotel booking liten/a

References

  • https://patchstack.com/database/wordpress/plugin/motopress-hotel-booking-lite/vulnerability/wordpress-hotel-booking-lite-plugin-6-0-3-sensitive-data-exposure-vulnerability?_s_id=cve(vdb-entry)

Related News (1 articles)

Tier C
VulDB52d ago
CVE-2026-57347 | jetmonsters Hotel Booking Lite Plugin up to 6.0.3 on WordPress insertion of sensitive information into sent data
→ No new info (linked only)
CVSS 3.16.5 MEDIUM
VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CISA KEV❌ No
Actively exploited✅ Yes
CWECWE-201
PublishedJul 2, 2026
Last enriched52d agov2
Trending Score0
Source articles1
Independent1
Info Completeness8/14
Missing: epss, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

HIGHCVE-2026-73400EXPKEV
WordPress Restaurant Menu by MotoPress plugin <= 2.4.11 - Local File Inclusion vulnerability
Trending: 45
HIGHCVE-2026-28140
WordPress JetFormBuilder plugin <= 3.6.4.1 - Broken Access Control vulnerability
Trending: 5
CRITICALCVE-2026-13454EXP
MotoPress Appointment Booking <= 2.4.5 - Authenticated (Staff+) SQL Injection via 's' Parameter
HIGHCVE-2026-57644EXP
WordPress Restaurant Menu by MotoPress plugin <= 2.4.10 - SQL Injection vulnerability
MEDIUMCVE-2025-63078
WordPress Restaurant Menu by MotoPress plugin <= 2.4.11 - Broken Access Control vulnerability

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Jul 2, 2026
Discovered by ZDM
Jul 2, 2026
Updated: description, activelyExploited
Jul 2, 2026
Actively Exploited
Jul 2, 2026

Version History

v2
Last enriched 52d ago
v2Tier C52d ago

Updated description with more technical detail and marked the vulnerability as actively exploited.

descriptionactivelyExploited
via VulDB
v152d ago

Initial creation