WP Vulnerability WatchVulnerability data as of September 7, 2026

Known vulnerabilities in Appointment Booking Calendar

Appointment Booking Calendar is an appointment calendar for accepting online bookings from a set of available time-slots in a calendar.

17Reported vulnerabilities
9.8Highest CVSS score
1.4.05Latest version
1,000+Active installs

What to do now

Update Appointment Booking Calendar to 1.4.03 or later. 17 of these have a fixed version available. Updating resolves them.

Plugin last updated: August 11, 2026 / Tested up to WordPress: 7.0.4 / View on wordpress.org

Reported vulnerabilities

Ordered by how urgently they need attention — whether a vulnerability is actually being exploited, and how likely exploitation is, rather than CVSS severity alone.

CVESeverityExploit probability
next 30 days
Affected versionsFixed inPublished
CVE-2020-9372 High 7.8 8.6% Before 1.3.35 1.3.35 March 4, 2020
CVE-2024-0856 High 8.8 0.4% Before 1.3.83 1.3.83 March 20, 2024
CVE-2024-12274 High 7.5 0.6% Before 1.1.23 1.1.23 January 13, 2025
CVE-2016-10916 Critical 9.8 1.8% Before 1.1.24 1.1.24 August 22, 2019
CVE-2019-14791 Medium 6.1 1.4% 1.3.18 to 1.3.18 (inclusive) 1.3.19 August 9, 2019
CVE-2020-9371 Medium 4.8 3.6% Before 1.3.35 1.3.35 March 4, 2020
WF-4d79df74-bb28-412b-bba1-9f8a40ae981d Critical 9.8 1.2.24 and earlier 1.2.25 January 27, 2016
CVE-2022-43482 High 8.8 0.5% Before 1.3.70 1.3.70 November 18, 2022
CVE-2015-7319 High 7.5 2.4% 1.1.7 and earlier 1.1.8 September 29, 2015
WF-13c9a71f-ec0a-4d4a-be08-787aa22a0fae High 7.2 1.2.24 and earlier 1.2.25 January 26, 2016
CVE-2025-46241 Medium 6.5 0.2% 1.3.92 and earlier 1.3.93 April 22, 2025
CVE-2025-13317 Medium 5.3 0.3% 0 to 1.3.96 (inclusive) 1.3.97 November 22, 2025
CVE-2025-46247 Medium 5.3 0.4% 1.3.92 and earlier 1.3.93 April 22, 2025
CVE-2015-7320 Medium 4.3 2.1% 1.1.7 and earlier 1.1.8 September 29, 2015
CVE-2026-12113 Medium 4.3 0.4% 0 to 1.4.02 (inclusive) 1.4.03 July 1, 2026
CVE-2026-12111 Medium 4.3 0.3% 0 to 1.4.01 (inclusive) 1.4.02 June 18, 2026
CVE-2025-64261 Medium 4.3 0.2% 1.3.95 and earlier 1.3.96 November 15, 2025

Sources: vulnerability records from NVD, exploitation from CISA KEV, exploit probability from EPSS. Affected versions come from CPE ranges or from the reporting CNA.