Vulnerability index

Browse CVEs

9 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Eventer CRITICAL 9.8
CVE-2025-39481

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in imithemes Eventer eventer allows Blind SQL Inje…

Fix: after 3.9.6
Fix from $2,300 2025-05-16
Eventer HIGH 8.8
CVE-2025-39482

Missing Authorization vulnerability in imithemes Eventer eventer allows Exploiting Incorrectly Configured Access Control Security Levels.This issue a…

Fix: after 3.9.6
Fix from $1,950 2025-05-16
Eventer MEDIUM 6.5
CVE-2025-0959

The Eventer - WordPress Event & Booking Manager Plugin plugin for WordPress is vulnerable to SQL Injection via the reg_id parameter in all versions u…

Fix: 3.9.9.3+
Fix from $1,600 2025-03-07
Eventer MEDIUM 6.1
CVE-2025-22635

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in imithemes Eventer eventer allows Reflected XSS.…

Fix: 3.9.9+
Fix from $1,600 2025-02-23
Eventer MEDIUM 6.5
CVE-2024-11134

The Eventer plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'eventer_export_bookings_csv' …

Fix: 3.9.9.1+
Fix from $1,600 2025-02-03
Eventer MEDIUM 5.4
CVE-2024-11132

The Eventer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to, and including, 3.9.9.4 due to insuffi…

Fix: after 3.9.9.4
Fix from $1,600 2025-02-03
Eventer MEDIUM 5.3
CVE-2024-11133

The Eventer plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'handle_pdf_download_request' …

Fix: after 3.9.9
Fix from $1,600 2025-02-03
Eventer HIGH 7.5
CVE-2024-11135

The Eventer plugin for WordPress is vulnerable to SQL Injection via the 'event' parameter in the 'eventer_get_attendees' function in all versions up …

Fix: 3.9.9+
Fix from $1,950 2025-01-28
Eventer MEDIUM 6.5
CVE-2024-10799

The Eventer plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 3.9.7 via the eventer_woo_download_ticket…

Fix: 3.9.8+
Fix from $1,600 2025-01-17