WordPress Plugin Vulnerabilities

My Calendar < 3.7.7 - Unauthenticated Denial of Service

Description

The My Calendar – Accessible Event Manager plugin for WordPress is vulnerable to Denial of Service in all versions up to 3.7.7 (exclusive). This makes it possible for unauthenticated attackers to trigger a fatal error.

Affects Plugins

Fixed in 3.7.7

References

Classification

Type
IDOR
CWE

Miscellaneous

Original Researcher
minhi1
Verified
No

Timeline

Publicly Published
2026-04-16 (about 4 months ago)
Added
2026-07-30 (about 24 days ago)
Last Updated
2026-07-30 (about 24 days ago)

Other