cleantalk
Vulnerabilities and Security Researches

Spiffy Calendar, CVE-2022-29434

CVE, Research URL

CVE-2022-29434

Application

Spiffy Calendar

Published on
May 21, 2022
Research Description
Insecure Direct Object References (IDOR) vulnerability in Spiffy Plugins Spiffy Calendar <= 4.9.0 at WordPress allows an attacker to edit or delete events.
Affected versions
max 4.9.2.
Status
vulnerable