CVE-2017-9420
CVE-2017-9420
Cross site scripting (XSS) vulnerability in the Spiffy Calendar plugin before 3.3.0 for WordPress allows remote attackers to inject arbitrary JavaScript via the yr parameter.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →