Event Booking Manager for WooCommerce < 5.3.7 - Author+ Stored XSS via Event Timeline Content (CVE-2026-16063) | HOL Guard CVE