simply-schedule-appointments vulnerabilities
CVEs whose affected-version data names the simply-schedule-appointments package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
CVE-2026-94074Medium· 6.5Unauthenticated Broken Access Control in Simply Schedule Appointments <= 1.6.12.29 versions.
Unauthenticated Broken Access Control in Simply Schedule Appointments <= 1.6.12.29 versions.
▾ SunlitNSquared · simply-schedule-appointmentsvia NVD
CVE-2026-94673Medium· 5.3Unauthenticated Insecure Direct Object References (IDOR) in Simply Schedule Appointments <= 1.6.12.31 versions.
Unauthenticated Insecure Direct Object References (IDOR) in Simply Schedule Appointments <= 1.6.12.31 versions.
▾ SunlitNSquared · simply-schedule-appointmentsvia NVD