← WordPress Vulnerabilities
WordPress security by component

Appointment Booking Plugin

Appointment Booking Plugin is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Jul 16, 2026; the highest CVE/CNA score is 5.4.

Plugin slug: appointment-booking-plugin

CVE-2026-11866: Appointment Booking Plugin: Cross-site request forgery

Appointment Booking Plugin is affected by cross-site request forgery. Exposure depends on how the affected operation is made reachable by the site. Exploitation relies on a signed-in privileged user submitting an attacker-controlled request. The published affected range is < 5.6.3.

PublishedJul 16, 2026
Known safe version5.6.3
Safe version
Jul 16, 2026 CVE-2026-11866
Appointment Booking Plugin: Cross-site request forgery
Appointment Booking Plugin is affected by cross-site request forgery. Exposure depends on how the affected operation is made reachable by the site. Exploitation relies on a signed-in privileged user submitting an attacker-controlled request. The published affected range is < 5.6.3.
5.6.3
CVE5.4
NVDPending