Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-66gp-w3xm-x3cc

Опубликовано: 14 июн. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

The events-calendar-pro WordPress plugin before 6.4.0.1, The Events Calendar WordPress plugin before 6.4.0.1 does not prevent users with at least the contributor role from leaking details about events they shouldn't have access to. (e.g. password-protected events, drafts, etc.)

The events-calendar-pro WordPress plugin before 6.4.0.1, The Events Calendar WordPress plugin before 6.4.0.1 does not prevent users with at least the contributor role from leaking details about events they shouldn't have access to. (e.g. password-protected events, drafts, etc.)

EPSS

Процентиль: 78%
0.01115
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
nvd
больше 1 года назад

The events-calendar-pro WordPress plugin before 6.4.0.1, The Events Calendar WordPress plugin before 6.4.0.1 does not prevent users with at least the contributor role from leaking details about events they shouldn't have access to. (e.g. password-protected events, drafts, etc.)

EPSS

Процентиль: 78%
0.01115
Низкий

6.5 Medium

CVSS3