CVE-2026-87966 | Easy Appointments Plugin up to 4.0.1 on WordPress Appointment Reservation Endpoint ID authorization
A vulnerability classified as critical was found in Easy Appointments Plugin 1.3.1/1.12.0/3.11.0/3.12.19/4.0.1 on WordPress. The affected element is an unknown function of the component Appointment Reservation Endpoint. The manipulation of the argument ID results in authorization bypass.
This vulnerability was named CVE-2026-87966. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is advised.VulDB Recent EntriesRead More