What is CVE-2026-65513?
CVE-2026-65513 describes an unauthenticated Cross Site Scripting (XSS) vulnerability in Simply Schedule Appointments plugin versions up to 1.6.12.10. An attacker could inject arbitrary scripts without user interaction; updating to the latest version is strongly recommended.
Azərbaycanca: CVE-2026-65513, Simply Schedule Appointments plagininin 1.6.12.10 və daha əvvəlki versiyalarında autentifikasiya olunmamış Cross Site Scripting (XSS) zəifliyini aşkarlayır. Təcavüzkar istifadəçi qarşılıqlı əlaqəsi olmadan ixtiyari skript kodu yeridə bilər; plaqini son versiyaya yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-79
FAQ2
Which plugin and versions does CVE-2026-65513 affect?
CVE-2026-65513 affects the Simply Schedule Appointments plugin versions up to and including 1.6.12.10.
What should users do to protect against CVE-2026-65513?
Users are strongly recommended to update the Simply Schedule Appointments plugin to the latest version.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.