
CVE-2026-0617 The LatePoint – Calendar Booking Plugin for Appointments and Events plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the customer profile fields in… https://www.cve.org/CVERecord?id=CVE-2026-0617
Post summary
The LatePoint Calendar Booking Plugin for WordPress has a stored XSS vulnerability in the customer profile fields, as identified by CVE-2026-0617.

