Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-14967 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in A.H.C. Waasdorp Simple Google Calendar Outlook Events Block Widget allows Stored XSS.This issue affects Simple Google Calendar Outlook Events Block Widget: from n/a through 2.5.0. |
Solution
Update the WordPress Simple Google Calendar Outlook Events Block Widget wordpress plugin to the latest available version (at least 2.6.0).
Workaround
No workaround given by the vendor.
Thu, 27 Mar 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 27 Mar 2025 15:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in A.H.C. Waasdorp Simple Google Calendar Outlook Events Block Widget allows Stored XSS.This issue affects Simple Google Calendar Outlook Events Block Widget: from n/a through 2.5.0. | |
| Title | WordPress Simple Google Calendar Outlook Events Block Widget plugin <= 2.5.0 - Cross Site Scripting (XSS) vulnerability | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-03-27T16:03:33.266Z
Reserved: 2025-01-07T10:22:25.313Z
Link: CVE-2025-22497
Updated: 2025-03-27T16:03:24.976Z
Status : Awaiting Analysis
Published: 2025-03-27T16:15:27.963
Modified: 2025-03-27T16:45:12.210
Link: CVE-2025-22497
No data.
OpenCVE Enrichment
No data.
EUVD