Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
calendar vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2023-50841
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Repute Infosystems BookingPress – Appointment Booking Calendar Plugin and Online Scheduling Plugin.This issue affects BookingPress – Appointment Booking Cal...
Reputeinfosystems Bookingpress
8.8
CVSSv3
CVE-2023-50842
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Matthew Fries MF Gig Calendar.This issue affects MF Gig Calendar: from n/a up to and including 1.2.1.
Mf Gig Calendar Project Mf Gig Calendar
7.2
CVSSv3
CVE-2023-50851
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in N Squared Appointment Booking Calendar — Simply Schedule Appointments Booking Plugin.This issue affects Appointment Booking Calendar — Simply Schedule Appoi...
Nsqua Simply Schedule Appointments
7.2
CVSSv3
CVE-2023-50852
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in StylemixThemes Booking Calendar | Appointment Booking | BookIt.This issue affects Booking Calendar | Appointment Booking | BookIt: from n/a up to and including 2.4.3.
Stylemixthemes Bookit
5.4
CVSSv3
CVE-2023-50860
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in TMS Booking for Appointments and Events Calendar – Amelia allows Stored XSS.This issue affects Booking for Appointments and Events Calendar – Amelia: from n...
Tms-outsource Amelia
7.5
CVSSv3
CVE-2023-51006
An issue in the openFile method of Chinese Perpetual Calendar v9.0.0 allows malicious users to read any file via unspecified vectors.
Zhwnl Chinese Perpetual Calendar 9.0.0
6.5
CVSSv3
CVE-2023-48308
Nextcloud/Cloud is a calendar app for Nextcloud. An attacker can gain access to stacktrace and internal paths of the server when generating an exception while editing a calendar appointment. It is recommended that the Nextcloud Calendar app is upgraded to 4.5.3
Nextcloud Calendar
5.4
CVSSv3
CVE-2023-48116
SmarterTools SmarterMail 8495 through 8664 prior to 8747 allows stored XSS via a crafted description of a Calendar appointment.
Smartertools Smartermail
8.1
CVSSv3
CVE-2023-36520
Authorization Bypass Through User-Controlled Key vulnerability in MarketingFire Editorial Calendar.This issue affects Editorial Calendar: from n/a up to and including 3.7.12.
Zackgrossbart Editorial Calendar
7.5
CVSSv3
CVE-2023-6203
The Events Calendar WordPress plugin prior to 6.2.8.1 discloses the content of password protected posts to unauthenticated users via a crafted request
Tri The Events Calendar
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33572
CVE-2024-24919
CVE-2024-0230
CVE-2024-32714
HTML injection
local file inclusion
CVE-2024-31098
CVE-2024-31244
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
3
4
5
6
7
8
9
10
NEXT »