Loading...
Loading...
Multiple cross-site scripting (XSS) vulnerabilities in WebCalendar 1.1.6 allow remote attackers to inject arbitrary web script or HTML via (1) an event description, (2) the query string to pref.php, and (3) the adv parameter to search.php. NOTE: vector 1 requires user authentication.
February 1, 2008
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2007-6696
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.