WordPress Easy Appointments plugin <= 4.0.2.1 - Cross Site Scripting (XSS) vulnerability (CVE-2026-81798) | HOL Guard CVE