Browse all 3 CVE security advisories affecting solidres. AI-powered Chinese analysis, POCs, and references for each vulnerability.
Solidres is a hotel reservation management system designed for booking and property management operations. Historically, the platform has been vulnerable to multiple security issues including remote code execution, cross-site scripting, and privilege escalation vulnerabilities. These weaknesses often stem from improper input validation and insufficient access controls. The three publicly disclosed CVEs highlight persistent security concerns in areas such as authentication bypass and insecure direct object references. While no major public security incidents have been widely reported, the pattern of vulnerabilities suggests ongoing challenges in secure coding practices, particularly in handling user inputs and managing session security.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2023-54363 | Joomla Solidres 2.13.3 Reflected XSS via Multiple Parameters — Joomla SolidresCWE-79 | 6.1 | Medium | 2026-04-09 |
| CVE-2025-23911 | WordPress Solidres – Hotel booking plugin for WordPress Plugin <= 0.9.4 - SQL Injection vulnerability — Solidres – Hotel booking pluginCWE-89 | 8.5 | High | 2025-01-16 |
| CVE-2023-1374 | Solidres <= 0.9.4 - Authenticated (Admin+) Stored Cross-Site Scripting — Solidres – Hotel booking plugin for WordPressCWE-79 | 4.4 | Medium | 2023-03-13 |
This page lists every published CVE security advisory associated with solidres. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.