| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2023-33874 | Intel NUC Software 安全漏洞 | - | Intel(R) NUC 12 Pro Kits & Mini PCs - NUC12WS Intel(R) HID Event Filter Driver installation software | Medium | 6.7 | 2023-11-14 19:04:46 | Deep Dive |
| CVE-2023-47697 | WordPress WP Event Manager Plugin <= 3.1.39 is vulnerable to Cross Site Scripting (XSS) | WP Event Manager | WP Event Manager – Events Calendar, Registrations, Sell Tickets with WooCommerce | High | 7.1 | 2023-11-13 22:28:41 | Deep Dive |
| CVE-2023-32477 | Dell Common Event Enabler 访问控制错误漏洞 | Dell | Common Event Enabler | High | 7.8 | 2023-09-29 07:18:09 | Deep Dive |
| CVE-2023-4423 | WP Event Manager – Events Calendar, Registrations, Sell Tickets with WooCommerce <= 3.1.37.1 - Authenticated (Admin+) Stored Cross-Site Scripting | wpeventmanager | WP Event Manager – Events Calendar, Registrations, Sell Tickets with WooCommerce | Medium | 4.4 | 2023-09-27 03:03:01 | Deep Dive |
| CVE-2023-36383 | WordPress Event Manager for WooCommerce Plugin <= 3.9.5 is vulnerable to Cross Site Scripting (XSS) | MagePeople Team | Event Manager and Tickets Selling Plugin for WooCommerce | Medium | 5.9 | 2023-07-18 14:22:14 | Deep Dive |
| CVE-2023-3558 | GZ Scripts Event Booking Calendar load.php cross site scripting | GZ Scripts | Event Booking Calendar | Low | 3.5 | 2023-07-08 14:00:05 | Deep Dive |
| CVE-2021-4404 | Event Espresso 4 Decaf <= 4.10.11 - Cross-Site Request Forgery Bypass | eventespresso | Event Espresso – Event Registration & Ticketing Sales | Medium | 4.3 | 2023-07-01 05:33:29 | Deep Dive |
| CVE-2023-3475 | SimplePHPscripts Event Script URL Parameter preview.php cross site scripting | SimplePHPscripts | Event Script | Low | 3.5 | 2023-06-30 07:00:05 | Deep Dive |
| CVE-2022-4950 | Cool Plugins (Various Versions) - Arbitrary Plugin Installation and Activation | narinder-singh | The Events Calendar Events Notification Bar Addon | High | 8.8 | 2023-06-07 01:51:53 | Deep Dive |
| CVE-2023-2406 | Event Registration Calendar By vcita <= 1.3.1 & Online Payments – Get Paid with PayPal, Square & Stripe <= 3.9.1 - Authenticated (Contributor+) Stored Cross-Site Scripting | vcita | Event Registration Calendar By vcita | Medium | 6.4 | 2023-06-03 04:35:13 | Deep Dive |
| CVE-2023-2407 | Event Registration Calendar By vcita <= 1.3.1 & Online Payments – Get Paid with PayPal, Square & Stripe <= 3.10.0 - Cross-Site Request Forgery to Stored Cross-Site Scripting | vcita | Event Registration Calendar By vcita | Medium | 6.1 | 2023-06-03 04:35:13 | Deep Dive |
| CVE-2022-47164 | WordPress Event Manager for WooCommerce Plugin <= 3.7.7 is vulnerable to Cross Site Request Forgery (CSRF) | MagePeople Team | Event Manager and Tickets Selling Plugin for WooCommerce | Medium | 4.3 | 2023-05-25 08:27:25 | Deep Dive |
| CVE-2023-27918 | WordPress plugin Appointment and Event Booking Calendar for WordPress 跨站脚本漏洞 | TMS | Appointment and Event Booking Calendar for WordPress - Amelia | 中危 | - | 2023-05-10 00:00:00 | Deep Dive |
| CVE-2023-28169 | WordPress Easy Event calendar Plugin <= 1.0 is vulnerable to Cross Site Scripting (XSS) | CoreFortress | Easy Event calendar | Medium | 5.9 | 2023-05-08 12:22:33 | Deep Dive |
| CVE-2023-2258 | Improper Neutralization of Formula Elements in a CSV File in alfio-event/alf.io | alfio-event | alfio-event/alf.io | 高危 | - | 2023-04-24 00:00:00 | Deep Dive |
| CVE-2023-2259 | Improper Neutralization of Special Elements Used in a Template Engine in alfio-event/alf.io | alfio-event | alfio-event/alf.io | 高危 | - | 2023-04-24 00:00:00 | Deep Dive |
| CVE-2023-2260 | Authorization Bypass Through User-Controlled Key in alfio-event/alf.io | alfio-event | alfio-event/alf.io | 高危 | - | 2023-04-24 00:00:00 | Deep Dive |
| CVE-2023-23979 | WordPress Quick Event Manager Plugin <= 9.7.4 is vulnerable to Cross Site Scripting (XSS) | Fullworks | Quick Event Manager | High | 7.1 | 2023-04-06 05:17:03 | Deep Dive |
| CVE-2022-46863 | WordPress Quick Event Manager Plugin <= 9.6.4 is vulnerable to Cross Site Scripting (XSS) | Fullworks | Quick Event Manager | Medium | 5.9 | 2023-03-28 08:04:15 | Deep Dive |
| CVE-2023-0496 | HT Event < 1.4.6 - Arbitrary Plugin Activation via CSRF | Unknown | HT Event | 中危 | - | 2023-03-27 15:37:37 | Deep Dive |