CVE-2019-15109

The Events Calendar
on wordpress-plugin

Published

Severity

CVSS v3:
6.1 MEDIUM
CVSS v2:
4.3 MEDIUM

Description

The the-events-calendar plugin before 4.8.2 for WordPress has XSS via the tribe_paged URL parameter.

References

Configurations

CPE23Version StartVersion EndExact Version
cpe:2.3:a:tri:the_events_calendar:*:*:*:*:*:wordpress:*:*n/a4.8.2*

External Links