๐Ÿ” CVE Alert

CVE-2026-15229

UNKNOWN 0.0

Pinpoint Booking System <= 2.9.9.6.9 - Unauthenticated Arbitrary Booking Price Manipulation

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

The Pinpoint Booking System WordPress plugin through 2.9.9.6.9 does not validate the booking price on the server side, allowing unauthenticated users to create bookings at an arbitrary price (including zero) and, by selecting a specific payment method, obtain an instantly-approved reservation.

Vendor unknown
Product pinpoint booking system
Published Aug 10, 2026
Stay Ahead of the Next One

Get instant alerts for unknown pinpoint booking system

Be the first to know when new unknown vulnerabilities affecting unknown pinpoint booking system are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Unknown / Pinpoint Booking System
0 โ‰ค 2.9.9.6.9

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
wpscan.com: https://wpscan.com/vulnerability/be12c266-dee7-463d-ae71-9f7b7e0258ee/

Credits

Ahmed Hashim Ismael WPScan