Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

WpEvently — Vulnerabilities & Security Advisories 15

All 15 CVE vulnerabilities found in WpEvently, with AI-generated Chinese analysis, references, and POCs.

This page documents common vulnerabilities associated with the WpEvently product, categorized by weakness type and tagged for easy reference. It aggregates security issues spanning from the software's initial release to the present day, providing a comprehensive view of its security posture over time. Users can track vendor advisories to stay informed about newly disclosed threats, understand specific weakness classes to better assess risk, and look up the product's vulnerability history to identify patterns or recurring issues. By centralizing this data, the page serves as a practical resource for security professionals, developers, and administrators seeking to evaluate and mitigate risks related to WpEvently deployments. The information is organized to facilitate quick searches and detailed analysis, enabling stakeholders to make informed decisions about patching, updates, and architectural improvements. This aggregation aims to reduce the time spent gathering fragmented reports from multiple sources and presents a clear, chronological record of known flaws. Readers can explore entries sorted by severity, date, or CVE reference to prioritize remediation efforts effectively. The goal is to enhance transparency and support proactive security management for all users relying on WpEvently, ensuring that potential weaknesses are understood and addressed systematically.

Vendor: magepeopleteam

CVE IDTitleCVSSSeverityPublished
CVE-2026-45441 WordPress WpEvently plugin <= 5.3.3 - Other Vulnerability Type vulnerability CWE-1284 7.5 High2026-06-15
CVE-2024-32110 WordPress Event Manager and Tickets Selling Plugin for WooCommerce plugin <= 4.1.2 - Cross Site Request Forgery (CSRF) vulnerability CWE-352 4.3 Medium2026-06-11
CVE-2026-25361 WordPress WpEvently plugin <= 5.1.4 - Reflected Cross Site Scripting (XSS) vulnerability CWE-79 7.1 High2026-03-25
CVE-2026-32354 WordPress WpEvently plugin < 5.1.9 - Sensitive Data Exposure vulnerability CWE-201 5.3 Medium2026-03-13
CVE-2026-23549 WordPress WpEvently plugin <= 5.1.1 - PHP Object Injection vulnerability CWE-502 9.8 Critical2026-02-19
CVE-2026-24954 WordPress WpEvently plugin <= 5.0.8 - Deserialization of untrusted data vulnerability CWE-502 8.8 High2026-02-03
CVE-2026-24942 WordPress WpEvently plugin <= 5.1.1 - Cross Site Request Forgery (CSRF) vulnerability CWE-352 4.3 Medium2026-02-03
CVE-2025-66082 WordPress WpEvently plugin <= 5.0.4 - Broken Access Control vulnerability CWE-862 5.3 Medium2025-11-21
CVE-2025-66083 WordPress WpEvently plugin <= 5.0.4 - Broken Access Control vulnerability CWE-862 5.3 Medium2025-11-21
CVE-2025-54742 WordPress WpEvently Plugin <= 4.4.8 - PHP Object Injection Vulnerability CWE-502 8.8 High2025-08-28
CVE-2025-54705 WordPress WpEvently plugin <= 4.4.6 - Broken Access Control vulnerability CWE-862 4.3 Medium2025-08-14
CVE-2025-32145 WordPress WpEvently plugin <= 4.3.6 - PHP Object Injection vulnerability CWE-502 8.8 High2025-04-10
CVE-2025-30895 WordPress WpEvently Plugin <= 4.2.9 - PHP Object Injection vulnerability CWE-22 7.5 High2025-03-27
CVE-2025-30887 WordPress WpEvently Plugin <= 4.2.9 - Broken Access Control vulnerability CWE-862 5.3 Medium2025-03-27
CVE-2024-49703 WordPress WpEvently plugin <= 4.2.5 - Cross Site Scripting (XSS) vulnerability CWE-79 6.5 Medium2024-10-24

All 15 known CVE vulnerabilities affecting WpEvently with full Chinese analysis, references, and POCs where available.