All 4 CVE vulnerabilities found in WP FullCalendar, with AI-generated Chinese analysis, references, and POCs.
Vendor: Unknown
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-22351 | WordPress WP FullCalendar plugin <= 1.6 - Broken Access Control vulnerability CWE-862 | 7.5 | High | 2026-02-20 |
| CVE-2026-24523 | WordPress WP FullCalendar plugin <= 1.6 - Sensitive Data Exposure vulnerability CWE-497 | 5.3 | Medium | 2026-01-23 |
| CVE-2025-22261 | WordPress WP FullCalendar plugin <= 1.5 - Cross Site Scripting (XSS) vulnerability CWE-79 | 6.5 | Medium | 2025-01-07 |
| CVE-2022-3891 | WP FullCalendar < 1.5 - Unauthenticated Arbitrary Post Access | 5.3 | - | 2023-02-13 |
All 4 known CVE vulnerabilities affecting WP FullCalendar with full Chinese analysis, references, and POCs where available.