All 7 CVE vulnerabilities found in Easy Appointments, with AI-generated Chinese analysis, references, and POCs.
Vendor: Unknown
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-2262 | Easy Appointments <= 3.12.21 - Unauthenticated Sensitive Information Exposure via REST API CWE-200 | 7.5 | High | 2026-04-17 |
| CVE-2025-49398 | WordPress Easy Appointments plugin <= 3.12.14 - Content Injection vulnerability CWE-80 | 6.5 | Medium | 2025-11-06 |
| CVE-2023-30748 | WordPress Easy Appointments plugin <= 3.10.7 - Auth. Stored Cross-Site Scripting (XSS) vulnerability CWE-79 | 4.3 | Medium | 2024-12-09 |
| CVE-2024-2844 | Easy Appointments <= 3.11.18 - Insufficient Authorization CWE-862 | 4.3 | Medium | 2024-03-29 |
| CVE-2024-2842 | Easy Appointments <= 3.11.18 - Authenticated (Contributor+) Stored Cross-Site Scripting CWE-79 | 6.4 | Medium | 2024-03-29 |
| CVE-2022-36424 | WordPress Easy Appointments Plugin <= 3.11.9 is vulnerable to Cross Site Request Forgery (CSRF) CWE-352 | 4.3 | Medium | 2023-07-17 |
| CVE-2022-4668 | Easy Appointments < 3.11.2 - Contributor+ Stored XSS in Shortcode | 5.4 | - | 2023-01-23 |
All 7 known CVE vulnerabilities affecting Easy Appointments with full Chinese analysis, references, and POCs where available.