CyberRota Analysis
AI-GeneratedSimply Schedule Appointments versions up to 1.6.12.10 are vulnerable to an unauthenticated SQL injection, allowing attackers to execute arbitrary SQL queries and potentially access sensitive data. This critical vulnerability poses a significant risk to any organization using the affected versions, particularly those handling sensitive user information. Organizations utilizing this plugin should prioritize immediate remediation to mitigate potential data breaches.
CVE
CVE-2026-65508
Severity
CRITICAL
CVSS
9.3
EPSS
0.29%
Original NVD Description
Unauthenticated SQL Injection in Simply Schedule Appointments <= 1.6.12.10 versions.