
CVE-2025-14873 The LatePoint – Calendar Booking Plugin for Appointments and Events plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and includ… https://www.cve.org/CVERecord?id=CVE-2025-14873
Post summary
The post announces that the LatePoint WordPress plugin is vulnerable to CSRF in all versions up to the listed CVE, with no evidence of a PoC, exploitation, patches, or mitigation steps.


