Pricing
Case studies
Login
Start trial
Events Manager
Marcus (aka @msykes)
Developer
7.2.3.1
Latest version
70,000
Installations
No date
Last updated
WordPress Plugin
No VDP
See changelog
Claim ownership
Report vulnerability
Vulnerabilities
Security Contributors
Vulnerability history
0 present
25 patched
7 Mitigation rules
Authenticated (Contributor+) Stored Cross-Site Scripting via 'events_list_grouped' Shortcode vulnerability
<= 7.2.2.1
17/12/2025
Cross-Site Request Forgery to Location Deletion vulnerability
<= 7.2.2.2
12/12/2025
Unauthenticated Information Exposure vulnerability
<= 7.2.2.2
12/12/2025
Reflected Cross Site Scripting (XSS) vulnerability
<= 6.6.4.4
09/07/2025
Unauthenticated SQL Injection vulnerability
<= 6.6.4.4
09/07/2025
Cross Site Scripting (XSS) vulnerability
<= 6.6.4.4
09/07/2025
Broken Access Control vulnerability
<= 6.6.4.1
26/02/2025
Unauthenticated SQL Injection via Event Status Parameter vulnerability
<= 6.6.3
20/02/2025
Reflected Cross-Site Scripting vulnerability
<= 6.4.8
01/07/2024
Authenticated (Contributor+) Stored Cross-Site Scripting via event, location, and event_category Shortcodes vulnerability
<= 6.4.7.3
12/06/2024
Broken Access Control vulnerability
<= 6.4.6.4
28/03/2024
Cross Site Request Forgery (CSRF) vulnerability
<= 6.4.7.1
28/03/2024
Cross-Site Request Forgery vulnerability
<= 6.4.7.1
28/03/2024
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
<= 6.4.7.1
28/03/2024
Authenticated(Administator+) Stored Cross-Site Scripting via settings vulnerability
<= 6.4.6.4
29/02/2024
Reflected Cross Site Scripting (XSS) vulnerability
<= 6.4.5
23/11/2023
Reflected Cross-Site Scripting (XSS) vulnerability
<= 5.9.7.3
30/11/2020
SQL Injection (SQLi) vulnerability
<= 5.9.7.3
30/11/2020
Authenticated Stored Cross-Site Scripting (XSS) vulnerability
<= 5.9.8.1
25/11/2020
CSV Injection vulnerability
<= 5.9.7.1
07/02/2020
Unauthenticated Stored XSS vulnerability
<= 5.8.1.1
28/03/2018
Cross Site Scripting
<= 5.5.1
15/05/2015
Cross Site Scripting
<= 5.3.8
15/05/2015
Multiple Cross Site Scripting
<= 5.3.5
15/05/2015
Multiple XSS
<= 5.3.4
19/01/2013