CVE-2026-32557: SQL Injection in WooCommerce Appointments

This text was generated using artificial intelligence (AI).CVE-2026-32557 affects the WordPress plugin WooCommerce Appointments in versions up to and including 5.3.2. Patchstack classifies the vulnerability as SQL Injection according to CWE-89 with a CVSS score of 9.3. The attack is possible over the network and does not require authentication.

Are my systems affected? Check now →