WordPress security by component
CP Multi View Event Calendar
Plugin description
CP Multi View Event Calendar is a WordPress component with 4 published CVE records in this archive. The latest tracked vulnerability was published Mar 25, 2026; the highest CVE/CNA score is 6.5.
Plugin slug:
cp-multi-view-calendarLatest vulnerability
CVE-2026-25465: CP Multi View Event Calendar: Cross-site scripting
CP Multi View Event Calendar is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed. The published affected range is <= 1.4.36.
| Safe version |
|
||
|---|---|---|---|
| Mar 25, 2026 |
CVE-2026-25465
CP Multi View Event Calendar: Cross-site scripting
CP Multi View Event Calendar is affected by cross-site scripting. Exposure depends on how the affected operation is made reachable by the site. Injected script can execute in the affected site's origin when the vulnerable output is viewed. The published affected range is <= 1.4.36.
|
> 1.4.36 |
CVE6.5
NVDPending
|
| Sep 22, 2025 |
CVE-2025-58009
CP Multi View Event Calendar: A security weakness
CP Multi View Event Calendar is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE3.8
NVDPending
|
| Dec 09, 2024 |
CVE-2023-23814
CP Multi View Event Calendar: A security weakness
CP Multi View Event Calendar is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE3.8
NVDPending
|
| Jun 03, 2024 |
CVE-2023-28492
CP Multi View Event Calendar: A security weakness
CP Multi View Event Calendar is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
|
See mitigation notes |
CVE4.3
NVDPending
|