Known Vulnerabilities for products from Myeventon

Listed below are 15 of the newest known vulnerabilities associated with the vendor "Myeventon".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2024-0238 json 6.1 - MEDIUM 2024-01-16 2024-02-05
CVE-2024-0237 json 5.3 - MEDIUM 2024-01-16 2024-02-05
CVE-2024-0236 json 5.3 - MEDIUM 2024-01-16 2024-01-19
CVE-2024-0235 json 5.3 - MEDIUM 2024-01-16 2024-01-19
CVE-2024-0233 json 6.1 - MEDIUM 2024-01-16 2024-01-19
CVE-2023-7200 json 6.1 - MEDIUM 2024-01-29 2024-02-05
CVE-2023-7170 json 6.1 - MEDIUM 2024-01-22 2024-01-26
CVE-2023-6244 json The EventON - WordPress Virtual Event Calendar Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all... Not Provided 2024-01-11 2026-04-08
CVE-2023-6242 json The EventON - WordPress Virtual Event Calendar Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all... Not Provided 2024-01-11 2026-04-08
CVE-2023-6158 json The EventON - WordPress Virtual Event Calendar Plugin plugin for WordPress is vulnerable to unauthorized modification of data... Not Provided 2024-01-10 2026-04-08
CVE-2023-4635 json The EventON plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'tab' parameter in versions up to, a... Not Provided 2023-10-21 2026-04-08
CVE-2023-4388 json The EventON WordPress plugin before 2.2 does not sanitise and escape some of its settings, which could allow high privilege u... 4.8 - MEDIUM 2023-10-16 2023-11-07
CVE-2023-3219 json The EventON WordPress plugin before 2.1.2 does not validate that the event_id parameter in its eventon_ics_download ajax acti... 5.3 - MEDIUM 2023-07-10 2023-11-07
CVE-2023-2796 json The EventON WordPress plugin before 2.1.2 lacks authentication and authorization in its eventon_ics_download ajax action, all... 5.3 - MEDIUM 2023-07-10 2023-11-07
CVE-2020-29395 json The EventON plugin through 3.0.5 for WordPress allows addons/?q= XSS via the search field. 6.1 - MEDIUM 2020-11-30 2022-08-06

Known software with vulnerabilities from Myeventon

Type Vendor Product Version
ApplicationMyeventonEventon-