Looking for the vulnerability index of Invicti's legacy products?
WordPress Plugin The Events Calendar Open Redirect (4.1.1) - Vulnerability Database

WordPress Plugin The Events Calendar Open Redirect (4.1.1)

Description

WordPress Plugin The Events Calendar is prone to an open redirect vulnerability because the application fails to properly verify user-supplied input. Exploiting this issue may allow attackers to redirect users to arbitrary web sites and conduct phishing attacks; other attacks are also possible. WordPress Plugin The Events Calendar version 4.1.1 is vulnerable; prior versions may also be affected.

Remediation

Update to plugin version 4.1.1.1 or latest

Related Vulnerabilities