CVE-2026-49073
wpWax Directorist Booking
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in wpWax Directorist Booking allows Blind SQL Injection. This issue affects Directorist Booking: from n/a through 3.0.3.
- CVSS
- 8.5
- EPSS
- 0.21% 10.7% percentile
- CISA KEV
- Not listed
- Published
- 2026.06.17