WhisperX tag archive

#google-calendar

This page collects WhisperX intelligence signals tagged #google-calendar. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (2)

The Lab · 2026-05-02 07:54:07 · GitHub Issues

1. Unverified Google Calendar Webhook Allows Forced Sync Injection in Cal.com Platform

A critical security gap has been identified in the Cal.com platform's Google Calendar webhook endpoint, potentially exposing users to unauthorized calendar manipulation. The vulnerability, classified as HIGH severity, exists in the `/api/webhook/google-calendar` route, where incoming webhook requests bypass essential s...

The Lab · 2026-05-02 07:54:08 · GitHub Issues

2. Critical Authentication Bypass in miconsu.app Booking API Allows Unauthorized Calendar Access

A critical security flaw has been identified in the `/api/booking/create` endpoint of miconsu.app, leaving the booking system entirely unprotected. Security researchers note the endpoint lacks any session verification, allowing anonymous users to submit booking requests without authentication. The vulnerability permits...