Vulnerabilities (CVE)

Filtered by vendor Weekly Schedule Project Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-24309 1 Weekly Schedule Project 1 Weekly Schedule 2024-11-21 3.5 LOW 5.4 MEDIUM
The "Schedule Name" input in the Weekly Schedule WordPress plugin before 3.4.3 general options did not properly sanitize input, allowing a user to inject javascript code using the <script> HTML tags and cause a stored XSS issue