Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-12298 | Missing Authorization vulnerability in codepeople Appointment Booking Calendar allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects Appointment Booking Calendar: from n/a through 1.3.92. |
Thu, 23 Apr 2026 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
cvssV3_1
|
Wed, 01 Apr 2026 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Missing Authorization vulnerability in codepeople Appointment Booking Calendar allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects Appointment Booking Calendar: from n/a through 1.3.92. | Missing Authorization vulnerability in codepeople Appointment Booking Calendar appointment-booking-calendar allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Appointment Booking Calendar: from n/a through <= 1.3.92. |
| Title | WordPress Appointment Booking Calendar <= 1.3.92 - Broken Access Control Vulnerability | WordPress Appointment Booking Calendar plugin <= 1.3.92 - Broken Access Control Vulnerability |
| References | ||
| Metrics |
cvssV3_1
|
cvssV3_1
|
Tue, 29 Apr 2025 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Codepeople
Codepeople appointment Booking Calendar |
|
| CPEs | cpe:2.3:a:codepeople:appointment_booking_calendar:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Codepeople
Codepeople appointment Booking Calendar |
Tue, 22 Apr 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 22 Apr 2025 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Missing Authorization vulnerability in codepeople Appointment Booking Calendar allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects Appointment Booking Calendar: from n/a through 1.3.92. | |
| Title | WordPress Appointment Booking Calendar <= 1.3.92 - Broken Access Control Vulnerability | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-04-28T16:12:36.985Z
Reserved: 2025-04-22T09:21:43.075Z
Link: CVE-2025-46247
Updated: 2025-04-22T16:06:14.601Z
Status : Modified
Published: 2025-04-22T10:15:19.137
Modified: 2026-04-23T15:29:56.920
Link: CVE-2025-46247
No data.
OpenCVE Enrichment
Updated: 2026-05-01T09:30:14Z
EUVD