Lucene search

K

Google Calendar Security Vulnerabilities

cve
cve

CVE-2024-33640

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LBell Pretty Google Calendar allows Stored XSS.This issue affects Pretty Google Calendar: from n/a through...

6.5CVSS

6.6AI Score

0.0004EPSS

2024-04-29 05:15 AM
26
cve
cve

CVE-2024-1425

The EmbedPress – Embed PDF, YouTube, Google Docs, Vimeo, Wistia Videos, Audios, Maps & Any Documents in Gutenberg & Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Google Calendar Widget Link in all versions up to, and including, 3.9.8 due to insufficient input.....

6.4CVSS

6AI Score

0.0004EPSS

2024-02-29 01:43 AM
37
cve
cve

CVE-2023-51504

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Dan Dulaney Dan's Embedder for Google Calendar allows Stored XSS.This issue affects Dan's Embedder for Google Calendar: from n/a through...

6.5CVSS

5.4AI Score

0.0004EPSS

2024-02-05 06:15 AM
19
cve
cve

CVE-2023-49151

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Simple Calendar Simple Calendar – Google Calendar Plugin allows Stored XSS.This issue affects Simple Calendar – Google Calendar Plugin: from n/a through...

6.5CVSS

5.4AI Score

0.0004EPSS

2023-12-14 06:15 PM
12
cve
cve

CVE-2023-46189

Cross-Site Request Forgery (CSRF) vulnerability in Simple Calendar – Google Calendar Plugin <= 3.2.5...

8.8CVSS

8.8AI Score

0.001EPSS

2023-10-25 06:17 PM
15
cve
cve

CVE-2023-45273

Cross-Site Request Forgery (CSRF) vulnerability in Matt McKenny Stout Google Calendar plugin <= 1.2.3...

8.8CVSS

8.8AI Score

0.001EPSS

2023-10-16 09:15 AM
23
cve
cve

CVE-2019-10425

Jenkins Google Calendar Plugin stores credentials unencrypted in job config.xml files on the Jenkins master where they can be viewed by users with Extended Read permission, or access to the master file...

6.5CVSS

6.3AI Score

0.001EPSS

2019-09-25 04:15 PM
19
cve
cve

CVE-2014-7138

Cross-site scripting (XSS) vulnerability in the Google Calendar Events plugin before 2.0.4 for WordPress allows remote attackers to inject arbitrary web script or HTML via the gce_feed_ids parameter in a gce_ajax action to...

5.8AI Score

0.005EPSS

2014-10-16 07:55 PM
29