Extension WordPress
Vulnérabilités Event Booking Manager for WooCommerce – Sell Tickets, Event Registration, RSVP & Event Calendar, page 2
Cette page rassemble les failles publiées pour Event Booking Manager for WooCommerce – Sell Tickets, Event Registration, RSVP & Event Calendar, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Event Booking Manager for WooCommerce – Sell Tickets, Event Registration, RSVP & Event Calendar
24 fiches
Event Manager and Tickets Selling Plugin for WooCommerce <= 3.7.9 – Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode
The Event Manager and Tickets Selling Plugin for WooCommerce is vulnerable to Stored Cross-Site Scripting via the plugin's shortcodes in versions up to, and including, 3.7.9 due to insufficient input sanitization and output escaping on user supplied attributes.…
*-3.7.9
3.8.0
10/01/2023
Event Manager and Tickets Selling for WooCommerce < 3.5.8 – SQL Injection
The Event Manager and Tickets Selling for WooCommerce WordPress plugin before 3.5.8 does not validate and escape the post_author_gutenberg parameter before using it in a SQL statement when creating/editing events, which could allow users with a role as…
[*, 3.5.8)
3.5.8
21/02/2022
Event Manager and Tickets Selling Plugin for WooCommerce < 3.5.3 – Missing Authorization
The Event Manager and Tickets Selling Plugin for WooCommerce plugin for WordPress is vulnerable to arbitrary template import in versions before 3.5.3 via the mep_import_ajax_template function. This is due to a missing capability check on this function. This…
[*, 3.5.3)
3.5.3
03/11/2021
Event Manager and Tickets Selling Plugin for WooCommerce < 3.5.3 – Arbitrary Settings Change
The Event Manager and Tickets Selling Plugin for WooCommerce plugin for WordPress is vulnerable to arbitrary settings reset via the mep_wl_ajax_license_activate and mep_wl_ajax_license_deactivate functions in versions before 3.5.3. This is due to a missing capabilities check on these…
[*, 3.5.3)
3.5.3
03/11/2021
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.