cleantalk
Vulnerabilities and Security Researches

Spiffy Calendar, CVE-2024-38692

CVE, Research URL

CVE-2024-38692

Application

Spiffy Calendar

Published on
Jul 22, 2024
Research Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Spiffy Plugins Spiffy Calendar allows SQL Injection.This issue affects Spiffy Calendar: from n/a through 4.9.11.
Affected versions
max 4.9.12.
Status
vulnerable