GHSA-hfw9-fm9r-jwrpMediumCVSS 6.5

The Booking for Appointments and Events Calendar WordPress plugin before 2.4.7 does not require...

Published
August 26, 2026
Last Modified
August 26, 2026

🔗 CVE IDs covered (1)

📋 Description

The Booking for Appointments and Events Calendar WordPress plugin before 2.4.7 does not require authentication before processing its pending notification queue, allowing an unauthenticated user to force the dispatch of queued notifications and integration callbacks.

🔗 References (3)