CVE-2026-42667HIGH NVDCVSS Score 7.5Severity HIGHPublished Jun 15, 2026Vendor unknownDescriptionUnauthenticated Sensitive Data Exposure in Bookly <= 27.4 versions.Referenceshttps://patchstack.com/database/wordpress/plugin/bookly-responsive-appointment-booking-tool/vulnerability/wordpress-bookly-plugin-27-4-sensitive-data-exposure-vulnerability?_s_id=cve