iCagenda vulnerabilities
1 published alerts for iCagenda iCagenda.
Actively exploited (KEV)
iCagenda Unrestricted Upload of File with Dangerous Type Vulnerability
iCagenda iCagenda is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2026-48939). iCagenda contains an unrestricted upload of file with dangerous type vulnerability that allows the upload of arbitrary files in the file attachment feature, ultimately resulting in PHP code upload and execution. CISA remediation due date: 2026-07-13. PremierePC tracks KEV alerts for Upstate SC businesses — patch or open a ticket if you need help verifying exposure.