
CVE-2026-2231 The Fluent Booking plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple parameters in all versions up to, and including, 2.0.01 due to insuffi… https://www.cve.org/CVERecord?id=CVE-2026-2231
Post summary
The Fluent Booking WordPress plugin has a stored XSS vulnerability affecting all versions through 2.0.01, with no PoC, exploit, or patch information provided.

