📦 Events Manager

by Pixelite

🔍 What is Events Manager?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-6970

HIGH CVSS 7.5 Jul 9, 2025

This vulnerability allows unauthenticated attackers to perform time-based SQL injection attacks on WordPress sites using the Events Manager plugin. Attackers can extract sensitive database information...

CVE-2024-11260

HIGH CVSS 7.5 Feb 21, 2025

This SQL injection vulnerability in the WordPress Events Manager plugin allows unauthenticated attackers to execute arbitrary SQL queries against the database. All WordPress sites using Events Manager...

CVE-2020-35012

HIGH CVSS 7.2 Dec 1, 2021

This SQL injection vulnerability in the Events Manager WordPress plugin allows attackers to execute arbitrary SQL commands on affected WordPress sites. It affects all WordPress installations using vul...

CVE-2025-6976

MEDIUM CVSS 6.4 Jul 9, 2025

This vulnerability allows authenticated WordPress users with contributor-level access or higher to inject malicious scripts into website pages through the Events Manager plugin's shortcodes. The scrip...

CVE-2024-3492

MEDIUM CVSS 6.4 Jun 12, 2024

This vulnerability allows authenticated WordPress users with contributor-level access or higher to inject malicious scripts into pages using the Events Manager plugin's shortcodes. When other users vi...

CVE-2024-30515

MEDIUM CVSS 4.3 Jun 9, 2024

This CVE describes a Missing Authorization vulnerability in the Pixelite Events Manager WordPress plugin. It allows attackers to perform actions without proper authentication, potentially modifying or...