
CVE-2026-3658 The Appointment Booking Calendar — Simply Schedule Appointments Booking Plugin plugin for WordPress is vulnerable to SQL Injection via the 'fields' parameter in all ver… https://www.cve.org/CVERecord?id=CVE-2026-3658
Post summary
A SQL injection vulnerability (CVE‑2026‑3658) has been disclosed in the Appointment Booking Calendar WordPress plugin, affecting all versions via the 'fields' parameter.


