cleantalk
Vulnerabilities and Security Researches

Appointment Booking Calendar — Simply Schedule Appointments Booking Plugin, CVE-2026-39447

CVE, Research URL

CVE-2026-39447

Published on
Jun 16, 2026
Research Description
Unauthenticated Cross Site Scripting (XSS) in Simply Schedule Appointments <= 1.6.10.6 versions.
Affected versions
max 1.6.11.0.
Status
vulnerable