📦 Eventprime

by Metagauss

🔍 What is Eventprime?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-31275

HIGH CVSS 8.2 Jun 9, 2024

This CVE describes a Missing Authorization vulnerability in the EventPrime WordPress plugin that allows attackers to manipulate booking prices without proper authentication. It affects all EventPrime ...

CVE-2023-45637

HIGH CVSS 7.1 Oct 25, 2023

Unauthenticated reflected cross-site scripting (XSS) vulnerability in EventPrime WordPress plugin allows attackers to inject malicious scripts via crafted URLs. This affects WordPress sites running Ev...

CVE-2023-33326

HIGH CVSS 7.1 May 28, 2023

This vulnerability allows unauthenticated attackers to inject malicious scripts into EventPrime WordPress plugin pages through reflected cross-site scripting (XSS). When users visit specially crafted ...

CVE-2024-4665

MEDIUM CVSS 6.4 May 15, 2025

The EventPrime WordPress plugin before version 3.5.0 has an authorization bypass vulnerability that allows authenticated users to modify or cancel bookings belonging to other users. This affects all W...

CVE-2024-9864

MEDIUM CVSS 6.1 Oct 24, 2024

This vulnerability allows unauthenticated attackers to inject malicious scripts into WordPress websites using the EventPrime plugin. When front-end users can submit events with tickets, attackers can ...

CVE-2024-8369

MEDIUM CVSS 5.3 Sep 10, 2024

The EventPrime WordPress plugin has an authorization bypass vulnerability that allows unauthenticated attackers to view private or password-protected events. This affects all WordPress sites using Eve...