Medium severity5.4NVD Advisory· Published Sep 13, 2021· Updated Jun 17, 2026
CVE-2021-24724
CVE-2021-24724
Description
The Timetable and Event Schedule by MotoPress WordPress plugin before 2.3.19 does not sanitise some of its parameters, which could allow low privilege users such as author to perform XSS attacks against frontend and backend users when viewing the related event/s
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- WordPress/Timetable and Event Schedule by MotoPressdescription
- Range: <2.3.19
Patches
Vulnerability mechanics
References
3- wpscan.com/vulnerability/c1194a1e-bf33-4f3f-a4a6-27b76b1b1eebnvdExploitThird Party Advisory
- www.trustwave.com/en-us/resources/security-resources/security-advisories/nvdExploitThird Party Advisory
- plugins.trac.wordpress.org/changeset/2573479/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.