PT-2026-63326 · Undefined · Undefined

CVE-2026-14322

·

Published

2026-07-22

·

Updated

2026-07-22

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
The Timetics WordPress plugin before 1.0.57 does not enforce a pending or unpaid status for new bookings created through a payment method other than its recognised gateways, allowing unauthenticated users to create fully-approved bookings for priced appointments without making any payment.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-14322

Affected Products

Undefined