CVE-2026-39541 | Themefic Hydra Booking Plugin up to 1.1.38 on WordPress cross site scripting
A vulnerability categorized as problematic has been discovered in Themefic Hydra Booking Plugin up to 1.1.38 on WordPress. Affected is an unknown function. Such manipulation leads to cross site scripting.
This vulnerability is listed as CVE-2026-39541. The attack may be performed from remote. There is no available exploit.