Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Quick_event_manager
(Fullworksplugins)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 4 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2023-01-20 | CVE-2023-23491 | The Quick Event Manager WordPress Plugin, version < 9.7.5, is affected by a reflected cross-site scripting vulnerability in the 'category' parameter of its 'qem_ajax_calendar' action. | Quick_event_manager | 6.1 | ||
2023-03-01 | CVE-2023-23974 | Cross-Site Request Forgery (CSRF) vulnerability in Fullworks Quick Event Manager plugin <= 9.7.4 affecting all registration actions (delete, delete all, edit, update). | Quick_event_manager | 5.4 | ||
2023-03-28 | CVE-2022-46863 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Fullworks Quick Event Manager plugin <= 9.6.4 versions. | Quick_event_manager | 4.8 | ||
2023-04-06 | CVE-2023-23979 | Unauth. Stored Cross-Site Scripting (XSS) vulnerability in Fullworks Quick Event Manager plugin <= 9.7.4 versions. | Quick_event_manager | 6.1 |