THREATOPS
THREAT OPSThreat News › [GHSA] GHSA-4vmm-5qvc-w5p7 (high) — Easy!Appointments Vulnerable to Appointments Takeover via Excessive Data Exposure

[GHSA] GHSA-4vmm-5qvc-w5p7 (high) — Easy!Appointments Vulnerable to Appointments Takeover via Excessive Data Exposure

medgithub_advisoriesPublished 2026-07-29

GHSA-4vmm-5qvc-w5p7 Severity: high CVE: CVE-2026-55651

Easy!Appointments Vulnerable to Appointments Takeover via Excessive Data Exposure

### Summary An Excessive Data Exposure vulnerability in the customers search endpoint allows an authenticated user to obtain appointment hashes belonging to other users. Using these hashes, an attacker can modify or delete appointments of other providers, resul

Indicators of compromise

Original source: https://github.com/advisories/GHSA-4vmm-5qvc-w5p7