Extension WordPress
Vulnérabilités SuperSaaS – online appointment scheduling
Cette page rassemble les failles publiées pour SuperSaaS – online appointment scheduling, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de SuperSaaS – online appointment scheduling
2 fiches
SuperSaaS – online appointment scheduling <= 2.1.12 – Authenticated (Contributor+) Stored Cross-Site Scripting via after Parameter
The SuperSaaS – online appointment scheduling plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘after’ parameter in all versions up to, and including, 2.1.12 due to insufficient input sanitization and output escaping. This makes it…
*-2.1.12
2.1.13
10/02/2025
SuperSaaS – online appointment scheduling <= 2.1.9 – Authenticated (Contributor+) Stored Cross-Site Scripting
The SuperSaaS – online appointment scheduling plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 2.1.9 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with…
*-2.1.9
2.1.10
01/07/2024
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.