Required CVE Record Information
Description
Cross-site scripting vulnerability in Event Calendar WD version 1.1.21 and earlier allows remote authenticated attackers to inject arbitrary web script or HTML via unspecified vectors.
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 4 Total
- jvn.jp: JVN#75738023 third-party-advisoryx_transferred
- https://wpvulndb.com/vulnerabilities/9199 x_transferred
- https://plugins.trac.wordpress.org/changeset/1961423/ x_transferred
- https://wordpress.org/plugins/event-calendar-wd/#developers x_transferred