A vulnerability was found in wpdevelop Booking Calendar Plugin up to 11.4.2 on WordPress. It has been rated as problematic. This issue affects some unknown processing. The manipulation leads to cross site scripting.
This vulnerability is listed as CVE-2026-59558. The attack may be initiated remotely. There is no available exploit.