Vulnerabilities > Myceliumdesign

DATE CVE VULNERABILITY TITLE RISK
2022-03-28 CVE-2022-0600 Cross-site Scripting vulnerability in Myceliumdesign Conference Scheduler
The Conference Scheduler WordPress plugin before 2.4.3 does not sanitize and escape the tab parameter before outputting back in an admin page, leading to a Reflected Cross-Site Scripting.
4.3