📦 The Events Calendar

by Stellarwp

🔍 What is The Events Calendar?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-8275

CRITICAL CVSS 9.8 Sep 25, 2024

This SQL injection vulnerability in The Events Calendar WordPress plugin allows unauthenticated attackers to execute arbitrary SQL queries through the 'order' parameter of the 'tribe_has_next_event' f...

CVE-2024-4180

CRITICAL CVSS 9.1 Jun 4, 2024

This vulnerability in The Events Calendar WordPress plugin allows attackers to inject malicious scripts into web pages viewed by other users. It affects WordPress sites running vulnerable plugin versi...

CVE-2024-6931

HIGH CVSS 7.2 Sep 27, 2024

This vulnerability allows unauthenticated attackers to inject malicious scripts into WordPress sites using The Events Calendar plugin. When users view pages containing RSVP submissions with injected s...

CVE-2023-6203

HIGH CVSS 7.5 Dec 18, 2023

The Events Calendar WordPress plugin before version 6.2.8.1 allows unauthenticated attackers to access password-protected posts through crafted requests. This affects WordPress sites using vulnerable ...

CVE-2025-5144

MEDIUM CVSS 6.4 Jun 11, 2025

This vulnerability allows authenticated WordPress users with Contributor-level access or higher to inject malicious scripts into website pages through the Events Calendar plugin. The scripts execute a...