WordPress Plugin Vulnerabilities
My Calendar < 3.7.7 - Unauthenticated Denial of Service
Description
The My Calendar – Accessible Event Manager plugin for WordPress is vulnerable to Denial of Service in all versions up to 3.7.7 (exclusive). This makes it possible for unauthenticated attackers to trigger a fatal error.
Affects Plugins
References
Classification
Type
IDOR
OWASP top 10
CWE
CVSS
Miscellaneous
Original Researcher
minhi1
Verified
No
WPVDB ID
Timeline
Publicly Published
2026-04-16 (about 4 months ago)
Added
2026-07-30 (about 24 days ago)
Last Updated
2026-07-30 (about 24 days ago)