Input validation vulnerability in Spiffy Calendar 4.9.5

The Spiffy Calendar plugin for WordPress has a security vulnerability that could allow attackers with contributor or higher permissions to inject malicious code into web pages. This malicious code would run when the page is accessed, potentially giving the attackers access to private information or allowing them to take control of the website. All versions up to 4.9.6 are vulnerable, so it’s important to make sure you have the latest version of the plugin installed.

Detected in:

Spiffy Calendar fixed vulnerable versions: >= * <= 4.9.5

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.