High severity8.2NVD Advisory· Published Apr 22, 2025· Updated Apr 23, 2026
CVE-2025-46241
CVE-2025-46241
Description
Cross-Site Request Forgery (CSRF) vulnerability in codepeople Appointment Booking Calendar appointment-booking-calendar allows SQL Injection.This issue affects Appointment Booking Calendar: from n/a through <= 1.3.92.
Affected products
1- cpe:2.3:a:codepeople:appointment_booking_calendar:*:*:*:*:*:wordpress:*:*Range: <1.3.93
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.