Input validation vulnerability in MF Gig Calendar 1.2.1

The MF Gig Calendar plugin for WordPress has a security issue that allows for Stored Cross-Site Scripting. This means that people with certain permissions can inject harmful web scripts into pages, which will then run whenever someone visits that page. This only affects certain types of installations, but it is important to be aware of.

Detected in:

MF Gig Calendar open vulnerable versions: >= * <= 1.2.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.