Input validation vulnerability in EventON – Events Calendar 2.3.2

The EventON plugin for WordPress has a security issue in versions 2.3.2 and below. This can allow hackers with contributor-level access or higher to access and run files on the server, which may contain harmful code. This can also lead to bypassing security measures, accessing private information, or executing code when seemingly safe files like images are uploaded and included.

Detected in:

EventON – Events Calendar fixed vulnerable versions:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.