CVE-2023-23491

All FrameworksWordPressCWE-79CVE-2023-23491

CVE-2023-23491

State: PUBLISHED · Published: 2023-01-20 · Updated: 2025-04-03 · Assigner: tenable
Description
The Quick Event Manager WordPress Plugin, version < 9.7.5, is affected by a reflected cross-site scripting vulnerability in the 'category' parameter of its 'qem_ajax_calendar' action.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2023/23xxx/CVE-2023-23491.json