Pricing
Case studies
Login
Start trial
My Calendar
Joe Dolson
Developer
3.7.6
Latest version
20,000
Installations
No date
Last updated
WordPress Plugin
No VDP
See changelog
Claim ownership
Report vulnerability
Vulnerabilities
Security Contributors
Vulnerability history
0 present
14 patched
3 Mitigation rules
WordPress My Calendar - Accessible Event Manager plugin <= 3.7.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode Attributes vulnerability
<= 3.7.3
04/03/2026
Broken Access Control vulnerability
<= 3.6.16
15/12/2025
Authenticated Stored XSS vulnerability
< 3.4.24
02/04/2024
Cross Site Scripting (XSS) vulnerability
<= 3.4.23
14/02/2024
Cross Site Request Forgery (CSRF) vulnerability
<= 3.4.3
20/01/2023
Cross Site Request Forgery (CSRF) vulnerability
<= 3.3.24.1
04/01/2023
Unauthenticated Open Redirect vulnerability
<= 3.3.16
02/08/2022
Reflected Cross-Site Scripting (XSS) vulnerability
<= 3.2.17
01/11/2021
Unauthenticated Cross-Site Scripting (XSS) vulnerability
<= 3.1.9
06/05/2019
Authenticated Cross-Site Scripting (XSS) vulnerability
<= 2.5.16
05/04/2018
Multiple Vulnerabilities
<= 2.4.10
06/11/2015
Multiple Vulnerabilities
<= 2.3.29
15/05/2015
Cross Site Scripting
<= 2.3.28
20/04/2015
XSS
<= 1.10.1
30/01/2013