Editorial Calendar Project maintains a focused plugin or extension product centered on content scheduling and publication workflows. The recurring weakness signal involves SQL injection in command handling, a pattern typical of web-accessible editorial and data-management tools where user input reaches database queries. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Editorial Calendar Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2013-10023CRITICAL A vulnerability was found in Editorial Calendar Plugin up to 2.6 on WordPress. It has been declared as critical. Affected by this vulnerability is the function edcal_filter_where o | Apr 8, 2023 | 9.8 | 31 | NO | NO |
CVE-2022-4115MEDIUM The Editorial Calendar WordPress plugin before 3.8.3 does not sanitise and escape its settings, allowing users with roles as low as contributor to inject arbitrary web scripts in t | Jun 27, 2023 | 5.4 | 15 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Editorial Calendar Project.
Media articles that mention a CVE ID that affects a product developed by Editorial Calendar Project — matched by CVE ID, not by vendor name.