plugin

Movie Booking Vulnerabilities

1 known security issue reported for the Movie Booking WordPress plugin. Most recent disclosed Jan 21, 2026.

1 critical

Running Movie Booking on your site? Check whether your installed version is affected.

Scan your site free

Movie Booking <= 1.1.5 - Unauthenticated Arbitrary File Deletion

critical

The Movie Booking plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in all versions up to, and including, 1.1.5. This makes it possible for unauthenticated attackers to delete arbitrary files on the server, which can easily lead to remote code execution when the righ...

CVSS:
9.1
Affected:
up to 1.1.5
Fixed in:
1.1.6
Disclosed:
Jan 21, 2026

CVE-2025-67963 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database