CVE-2023-34854: Digitaldruid Hoteldruid
Medium severity, CVSS 6.6. EPSS: 0.2% chance of exploitation in the next 30 days.
HotelDruid before 3.0.6 has insufficient file upload sanitation in the backup/restore function.
Affected products
- Digitaldruid Hoteldruid: before 3.0.6 (fixed in 3.0.6)
Published 2026-09-14. Last modified 2026-09-22.