CVE-2026-19416 UNKNOWN

CVE-2026-19416

Published: 2026-08-19

Description

The KiviCare WordPress plugin before 4.5.4 does not verify that the requesting user owns the appointment being modified, allowing authenticated patient-level users to cancel and reschedule other patients' appointments.

AI Intelligence Brief

AI Intelligence

Analyzing vulnerability vectors…