Lucene search

K
patchstackKrzysztof ZającPATCHSTACK:B08ED24B9BCD427A1B09BEA4EF86694F
HistoryNov 15, 2021 - 12:00 a.m.

WordPress Modern Events Calendar Lite plugin <= 6.1.0 - Reflected Cross-Site Scripting (XSS) vulnerability

2021-11-1500:00:00
Krzysztof Zając
patchstack.com
10

0.143 Low

EPSS

Percentile

95.7%

Reflected Cross-Site Scripting (XSS) vulnerability discovered by Krzysztof Zając in WordPress Modern Events Calendar Lite plugin (versions <= 6.1.0).

Solution

           Update the WordPress Modern Events Calendar Lite plugin to the latest available version (at least 6.1.5).
CPENameOperatorVersion
modern events calendar litele6.1.0

0.143 Low

EPSS

Percentile

95.7%