
CVE-2026-8684 The MotoPress Hotel Booking plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 6.0.1. This is due to the plugin not proper… https://www.cve.org/CVERecord?id=CVE-2026-8684
Post summary
The MotoPress Hotel Booking plugin for WordPress is vulnerable to an authorization bypass (CVE‑2026‑8684) in all versions up to 6.0.1, with no PoC, exploit tool, active exploitation, or patch mentioned in the text.
