Vulnerabilities > Webnus > Modern Events Calendar Lite > 6.5.5

DATE CVE VULNERABILITY TITLE RISK
2023-10-20 CVE-2023-4021 Cross-site Scripting vulnerability in Webnus Modern Events Calendar Lite
The Modern Events Calendar lite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Google API key and Calendar ID in versions up to, but not including, 7.1.0 due to insufficient input sanitization and output escaping.
network
low complexity
webnus CWE-79
4.8