Review
Five Star Restaurant Reservations
CVE published 2026-08-02
CVE-2026-15151
The Five Star Restaurant Reservations WordPress plugin before 2.7.23 has a vulnerability allowing users with the lowest booking-management role to reset the site's configured booking notification rules due to a missing capability check on one of its AJAX actions. This vulnerability could potentially allow unauthorized changes to booking notification settings, impacting site security and data integrity. Th [truncated]