cleantalk
Vulnerabilities and Security Researches

Spiffy Calendar, CVE-2022-25599

CVE, Research URL

CVE-2022-25599

Application

Spiffy Calendar

Published on
Feb 21, 2022
Research Description
Cross-Site Request Forgery (CSRF) vulnerability leading to event deletion was discovered in Spiffy Calendar WordPress plugin (versions <= 4.9.0).
Affected versions
max 4.9.1.
Status
vulnerable