---
id: CVE-2025-69130
title: >-
  WordPress Entrepreneur - Booking for Small Businesses WordPress Theme theme <
  3.1.5 - PHP Object Injection vulnerability
summary: >-
  Deserialization of Untrusted Data vulnerability in Pixel Makers Creative INC.
  Entrepreneur - Booking for Small Businesses WordPress Theme allows Object
  Injection.


  This issue affects Entrepreneur - Booking for Small Businesses WordPress …
severity: high
cvss: 8.8
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'
cvssSource: cna
cwe:
  - CWE-502
vendor: Pixel Makers Creative INC.
product: Entrepreneur - Booking for Small Businesses WordPress Theme
affected:
  - entrepreneur_-_booking_for_small_businesses_wordpress_theme >= n/a < 3.1.5
ssvc:
  exploitation: none
  automatable: 'no'
  technicalImpact: total
  timestamp: '2026-06-17T14:11:13.586512Z'
published: '2026-06-17'
updated: '2026-09-14'
sourceUpdated: '2026-09-14T10:20:52.516Z'
source: CVEORG
sourceUrl: 'https://www.cve.org/CVERecord?id=CVE-2025-69130'
references:
  - url: >-
      https://patchstack.com/database/wordpress/theme/entrepreneurx/vulnerability/wordpress-entrepreneur-booking-for-small-businesses-wordpress-theme-theme-3-1-3-php-object-injection-vulnerability?_s_id=cve
tags:
  - cve.org
epss: 0.00482
epssPercentile: 0.40745
ingestedAt: '2026-09-14T15:23:07.463Z'
---

## Overview

Deserialization of Untrusted Data vulnerability in Pixel Makers Creative INC. Entrepreneur - Booking for Small Businesses WordPress Theme allows Object Injection.

This issue affects Entrepreneur - Booking for Small Businesses WordPress Theme: from n/a before 3.1.5.

## Affected

- `entrepreneur_-_booking_for_small_businesses_wordpress_theme >= n/a < 3.1.5`

## Remediation

Update the WordPress Entrepreneur - Booking for Small Businesses WordPress Theme theme to the latest available version (at least 3.1.5).
