Lucene search

K
patchstackKrzysztof ZającPATCHSTACK:7E8FB25D19002875D3169509B189C033
HistoryNov 15, 2021 - 12:00 a.m.

WordPress Modern Events Calendar Lite plugin <= 6.1.0 - Unauthenticated Blind SQL Injection (SQLi) vulnerability

2021-11-1500:00:00
Krzysztof Zając
patchstack.com
29

0.143 Low

EPSS

Percentile

95.7%

Unauthenticated Blind SQL Injection (SQLi) vulnerability discovered by Krzysztof Zając in WordPress Modern Events Calendar Lite plugin (versions <= 6.1.0).

Solution

           Update the WordPress Modern Events Calendar Lite plugin to the latest available version (at least 6.1.5).
CPENameOperatorVersion
modern events calendar litele6.1.0

0.143 Low

EPSS

Percentile

95.7%