CVE-2026-13358 | croixhaug Simply Schedule Appointments Plugin up to 1.6.12.10 on WordPress Render Shortcode render-shortcode ssa_past_appointments information disclosure

SecurityVulns

A vulnerability was found in croixhaug Simply Schedule Appointments Plugin up to 1.6.12.10 on WordPress and classified as problematic. This affects an unknown function of the file /wp-json/ssa/v1/render-shortcode of the component Render Shortcode. The manipulation of the argument ssa_past_appointments results in information disclosure.

This vulnerability is known as CVE-2026-13358. It is possible to launch the attack remotely. No exploit is available.VulDB Recent EntriesRead More