📦 Eventer

by Imithemes

🔍 What is Eventer?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-0959

HIGH CVSS 8.8 Mar 7, 2025

This SQL injection vulnerability in the Eventer WordPress plugin allows authenticated attackers with Subscriber-level access or higher to inject malicious SQL queries via the reg_id parameter. This ca...

CVE-2024-11135

HIGH CVSS 7.5 Jan 28, 2025

The Eventer WordPress plugin contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries through the 'event' parameter. This can lead to extraction o...

CVE-2025-39482

MEDIUM CVSS 4.3 May 16, 2025

CVE-2025-39482 is a missing authorization vulnerability in the Eventer WordPress plugin that allows attackers to bypass intended access controls. This affects WordPress sites using Eventer versions be...

CVE-2024-11132

MEDIUM CVSS 6.4 Feb 3, 2025

The Eventer WordPress plugin up to version 3.9.9 has a stored XSS vulnerability in shortcode attributes. Authenticated attackers with contributor-level permissions or higher can inject malicious scrip...

CVE-2024-11134

MEDIUM CVSS 4.3 Feb 3, 2025

The Eventer WordPress plugin has an authorization vulnerability that allows authenticated users with subscriber-level permissions or higher to download booking data containing customers' personal info...