VYPR

Supersaas Appointment Scheduling

by WordPress

Source repositories

CVEs (1)

  • CVE-2025-0862MedFeb 11, 2025
    risk 0.25cvss 4.9epss 0.00

    The SuperSaaS – online appointment scheduling plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘after’ parameter in all versions up to, and including, 2.1.12 due to insufficient input sanitization and output escaping. This makes it possible for…