CVE-2023-6360

Publication date

2023-11-30 15:17:14

Family

tenable

State

PUBLISHED

Description

The My Calendar WordPress Plugin, version < 3.4.22 is affected by an unauthenticated SQL injection vulnerability in the from and to parameters in the /my-calendar/v1/events rest route.