PatchSiren

Booking Activities Team CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM Booking Activities Team CVE published 2026-06-15

CVE-2026-39525

CVE-2026-39525 is a MEDIUM severity vulnerability with a CVSS score of 6.5. It is an Unauthenticated Broken Access Control issue affecting Booking Activities plugin versions <= 1.16.48.1.