NA

CVE-2023-49745

Published: 14/12/2023 Updated: 18/12/2023
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 0

Vulnerability Summary

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Spiffy Plugins Spiffy Calendar allows Stored XSS.This issue affects Spiffy Calendar: from n/a up to and including 4.9.5.

Vulnerable Product Search on Vulmon Subscribe to Product

spiffyplugins spiffy calendar