CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.6. See the original NVD description below for full technical details.
CVE
CVE-2026-39620
Severity
CRITICAL
CVSS
9.6
EPSS
0.14%
Original NVD Description
Cross-Site Request Forgery (CSRF) vulnerability in priyanshumittal Appointment appointment allows Upload a Web Shell to a Web Server.This issue affects Appointment: from n/a through <= 3.5.5.