Security Advisory

CVE-2023-6360

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-11-30 15:17:14
Last updated 2024-10-10 20:19:02
Assigner tenable
CVSS score 8.6
State PUBLISHED

Description

The 'My Calendar' WordPress Plugin, version < 3.4.22 is affected by an unauthenticated SQL injection vulnerability in the 'from' and 'to' parameters in the '/my-calendar/v1/events' rest route.