Joedolson My Calendar 1.9.6 WordPress

CPE Details

Joedolson My Calendar 1.9.6 WordPress
1.9.6
2023-12-26
16h03 +00:00
2023-12-26
16h03 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:joedolson:my_calendar:1.9.6:*:*:*:*:wordpress:*:*

Informations

Vendor

joedolson

Product

my_calendar

Version

1.9.6

Target Software

wordpress

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2023-6360 2023-11-30 15h17 +00:00 The 'My Calendar' WordPress Plugin, version < 3.4.22 is affected by an unauthenticated SQL injection vulnerability in the 'from' and 'to' parameters in the '/my-calendar/v1/events' rest route.
9.8
Critical
CVE-2012-6527 2013-01-31 01h00 +00:00 Cross-site scripting (XSS) vulnerability in the My Calendar plugin before 1.10.2 for WordPress allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.
2.6