The Events Calendar WordPress plugin before 6.2.8.1 discloses the content of password protected posts to unauthenticated users via a crafted request
2023-12-18T20:15:08.847
2024-11-21T08:43:21.720
Modified
CVSSv3.1: 7.5 (HIGH)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | stellarwp | the_events_calendar | < 6.2.8.1 | Yes |