Authorization Flaw in QuanticaLabs Car Park Booking System for WordPress
CVE-2025-39376
4.3MEDIUM
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 19 May 2025
What is CVE-2025-39376?
A missing authorization vulnerability exists in the Car Park Booking System for WordPress, allowing unauthorized users to gain access to restricted actions or data within the application. This issue, prevalent in versions from n/a through 2.6, poses significant risks as it can lead to unauthorized bookings or modifications, impacting the integrity of the booking process. Users are encouraged to update to the latest version to mitigate these risks and enhance security.
Affected Version(s)
Car Park Booking System for WordPress <= 2.6