Логотип exploitDog
bind:CVE-2024-1274
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-1274

Количество 2

Количество 2

nvd логотип

CVE-2024-1274

почти 2 года назад

The My Calendar WordPress plugin before 3.4.24 does not sanitise and escape some parameters, which could allow users with a role as low as Subscriber to perform Cross-Site Scripting attacks (depending on the permissions set by the admin)

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-9576-cchc-4f79

почти 2 года назад

The My Calendar WordPress plugin before 3.4.24 does not sanitise and escape some parameters, which could allow users with a role as low as Subscriber to perform Cross-Site Scripting attacks (depending on the permissions set by the admin)

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-1274

The My Calendar WordPress plugin before 3.4.24 does not sanitise and escape some parameters, which could allow users with a role as low as Subscriber to perform Cross-Site Scripting attacks (depending on the permissions set by the admin)

CVSS3: 5.4
0%
Низкий
почти 2 года назад
github логотип
GHSA-9576-cchc-4f79

The My Calendar WordPress plugin before 3.4.24 does not sanitise and escape some parameters, which could allow users with a role as low as Subscriber to perform Cross-Site Scripting attacks (depending on the permissions set by the admin)

CVSS3: 5.4
0%
Низкий
почти 2 года назад

Уязвимостей на страницу