VYPR

SimpleCalendar

by Wikimedia Foundation

CVEs (2)

  • CVE-2025-32077MedApr 11, 2025
    risk 0.45cvss epss 0.00

    Improper Input Validation vulnerability in The Wikimedia Foundation Mediawiki - Extension:SimpleCalendar allows Cross-Site Scripting (XSS).This issue affects Mediawiki - Extension:SimpleCalendar: from 1.39 through 1.43.

  • CVE-2018-5974Feb 17, 2018
    risk 0.03cvss epss 0.03

    SQL Injection exists in the SimpleCalendar 3.1.9 component for Joomla! via the catid array parameter.