Input validation vulnerability in EventPrime – Events Calendar, Bookings and Tickets 4.0.4.7

The EventPrime plugin for WordPress, which helps with creating events, managing bookings, and selling tickets, has a security issue. This issue, known as Stored Cross-Site Scripting, affects all versions of the plugin up to 4.0.4.7. It happens because the plugin does not properly clean up user input and output. This allows attackers to add harmful code to pages that will run when someone views the booking history.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.