CVE · Medium

CVE-2025-69315 — Simply Schedule Appointments [simply-schedule-appointments] < 1.6.9.17

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2025-69315 Simply Schedule Appointments [simply-schedule-appointments] < 1.6.9.17 Missing Authorization Medium 6.5 < 1.6.9.17 1.6.9.17 2026-01-20

CVE-2025-69315

A security flaw exists in the Appointment Booking Calendar - Simply Schedule Appointments Booking Plugin, affecting WordPress installations using plugin versions prior to 1.7.0. The issue arises from a lack of permission verification in certain functions, allowing individuals without proper authorization to initiate unauthorized actions on affected sites.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.