AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-66462

HIGH · CVSS 7.5 EPSS 0.30%

Source: NVD + CISA KEV + EPSS · Published 2026-08-13 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

The WooCommerce Appointments plugin versions up to 5.3.8 are vulnerable to unauthenticated sensitive data exposure, allowing attackers to access confidential information without authentication. This vulnerability poses a significant risk to user privacy and data integrity, making it critical for organizations using affected versions to prioritize immediate updates. E-commerce platforms and businesses relying on WooCommerce should take action to mitigate this risk promptly.

CVE
CVE-2026-66462
Severity
HIGH
CVSS
7.5
EPSS
0.30%

Original NVD Description

Unauthenticated Sensitive Data Exposure in WooCommerce Appointments <= 5.3.8 versions.