High 7.5 Unfixed
2026-02-20≤ 1.6
WordPress WP FullCalendar plugin <= 1.6 - Broken Access Control vulnerability
Minimum safe version
1.6
Update to 1.6 or later to address 2 fixable vulnerabilities
WordPress WP FullCalendar plugin <= 1.6 - Broken Access Control vulnerability
FullCalendar <= 1.6 - Unauthenticated Information Exposure
CVE-2025-22261
CVE-2022-3891