Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update the WordPress WP Time Slots Booking Form Plugin to the latest available version (at least 1.2.47).
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 16 Jun 2026 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Codepeople
Codepeople wp Time Slots Booking Form Wordpress Wordpress wordpress |
|
| Vendors & Products |
Codepeople
Codepeople wp Time Slots Booking Form Wordpress Wordpress wordpress |
|
| Metrics |
ssvc
|
Mon, 15 Jun 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Unauthenticated Cross Site Scripting (XSS) in WP Time Slots Booking Form <= 1.2.46 versions. | |
| Title | WordPress WP Time Slots Booking Form plugin <= 1.2.46 - Cross Site Scripting (XSS) vulnerability | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-06-16T01:28:26.570Z
Reserved: 2026-04-15T09:20:46.957Z
Link: CVE-2026-40791
Updated: 2026-06-16T01:28:21.569Z
Status : Deferred
Published: 2026-06-15T21:16:51.417
Modified: 2026-06-15T21:24:32.790
Link: CVE-2026-40791
No data.
OpenCVE Enrichment
Updated: 2026-06-18T01:00:05Z