VendorsEasy Appointmentseasy_appointmentsall versions
Vulnerabilities

Easy Appointments Easy Appointments

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2022-36424
WordPress Easy Appointments Plugin <= 3.11.9 is vulnerable to Cross Site Request Forgery (CSRF)
Published 2023-07-17 · Modified
8.8EPSS 0.003
CVE-2024-2842
Easy Appointments <= 3.11.18 - Authenticated (Contributor+) Stored Cross-Site Scripting
Published 2024-03-29 · Modified
6.4EPSS 0.003
CVE-2017-15812
The Easy Appointments plugin before 1.12.0 for WordPress has XSS via a Settings values in the admin panel.
Published 2017-10-23 · Modified
6.1EPSS 0.007
CVE-2023-30748
WordPress Easy Appointments plugin <= 3.10.7 - Auth. Stored Cross-Site Scripting (XSS) vulnerability
Published 2024-12-09 · Analyzed
6.1EPSS 0.004
CVE-2022-4668
Easy Appointments < 3.11.2 - Contributor+ Stored XSS in Shortcode
Published 2023-01-23 · Modified
5.4EPSS 0.005
CVE-2024-2844
Easy Appointments <= 3.11.18 - Insufficient Authorization
Published 2024-03-29 · Modified
4.3EPSS 0.004