Input validation vulnerability in EventPrime – Modern Events Calendar, Bookings and Tickets 3.0.5

The EventPrime plugin for WordPress is vulnerable to a security risk called Reflected Cross-Site Scripting. This is an issue in versions up to 3.0.5. It happens because the plugin does not properly check the inputs that come in, or protect against malicious scripts. If an attacker can trick a user into clicking on a link, they can inject dangerous scripts into the page, which could harm the user.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.