Tockify Events Calendar, CVE-2025-32174
- CVE, Research URL
- Home page URL
- Application
- Published on
- Apr 04, 2025
- Research Description
- Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tockify Tockify Events Calendar allows DOM-Based XSS. This issue affects Tockify Events Calendar: from n/a through 2.2.13.
- Affected versions
-
Min -, max 2.2.13.
- Status
-
vulnerable
Previous vulnerability researches |
---|
Cart tracking for WooCommerce (d666481e974f21c6b520fbaf7e0c7d274c39fb4b) , Jun 07, 2024 |
Cart tracking for WooCommerce (CVE-2025-30791) , Mar 28, 2025 |