CVE-2019-15109
on wordpress-plugin
Published
Severity
CVSS v3:
6.1 MEDIUM
CVSS v2:
4.3 MEDIUM
Description
The the-events-calendar plugin before 4.8.2 for WordPress has XSS via the tribe_paged URL parameter.
References
Configurations
CPE23 | Version Start | Version End | Exact Version |
---|---|---|---|
cpe:2.3:a:tri:the_events_calendar:*:*:*:*:*:wordpress:*:* | n/a | 4.8.2 | * |