cleantalk
Vulnerabilities and Security Researches

Simple Calendar – Google Calendar Plugin, CVE-2025-68979

CVE, Research URL

CVE-2025-68979

Published on
Dec 30, 2025
Research Description
Authorization Bypass Through User-Controlled Key vulnerability in SimpleCalendar Google Calendar Events google-calendar-events allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Google Calendar Events: from n/a through <= 3.5.9.
Affected versions
max 3.5.9.
Status
vulnerable