PatchSiren

Amelia Booking CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Amelia Booking CVE published 2026-09-11

CVE-2026-62112

A SQL injection vulnerability exists in the Amelia plugin versions up to 2.4.9. This issue allows an attacker to inject malicious SQL code, potentially leading to data breaches or other security incidents. The vulnerability has been identified as CVE-2026-62112 and has a CVSS score of 7.6, indicating a high severity level.