
🚨 CVE-2026-6854 - high 🚨 My Calendar < 3.7.9 - Unauthenticated SQL Injection > The My Calendar – Accessible Event Manager plugin for WordPress is vulnerable to time... 👾 https://cloud.projectdiscovery.io/library/CVE-2026-6854 @pdnuclei #NucleiTemplates #cve
Post summary
The tweet announces CVE‑2026‑6854, a high‑severity unauthenticated SQL injection in the My Calendar WordPress plugin, and provides a link to a Nuclei PoC template.

