Nxploited[verified]@NxploitedDisclosure
This tweet announces a new IDOR vulnerability (CVE-2026-2931) in Amelia Booking 9.1.2 that allows authenticated users to change any user's password; no PoC, exploit code, or patch is provided.
Black Lantern Security (BLSOPS)@BlackLanternLLCDisclosure
The post announces CVE-2026-2931, detailing an admin takeover flaw in Amelia Booking Pro, but provides no exploit code or mitigation information.
CVE@CVEnewGeneral
The post reports CVE-2026-2931 affecting Amelia Booking plugin as an IDOR flaw, but contains no PoC, exploit, patch, or evidence of active exploitation.
CVEFind.com@CveFindComDisclosure
The post discloses a high‑severity IDOR vulnerability in Amelia Booking plugin versions up to 9.1.2, enabling authenticated attackers to modify passwords and potentially take system control.
The Hacker Wire@TheHackerWireDisclosure
A security advisory identifies a high‑severity Insecure Direct Object Reference vulnerability in Amelia Booking plugin versions up to 9.1.2. The post provides the CVE ID, severity, affected plugin and version, but does not mention exploits, PoC, or patches.