CVE-2015-9297, CVE-2015-9298
The Events Manager plugin for WordPress prior to version 5.6 contains a cross-site scripting vulnerability that allows attackers to inject malicious scripts into the application.
Based on public CVE data (MITRE/NVD).
CVE · Medium
| CVE | Vulnerability | Type | Severity | Affected | Fixed in | Published | Status |
|---|---|---|---|---|---|---|---|
| CVE-2015-9297, CVE-2015-9298 | Events Manager – Calendar, Bookings, Tickets, and more! [events-manager] < 5.6 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') | Medium 6.1 | < 5.6 | 5.6 | 2015-08-10 | — |
The Events Manager plugin for WordPress prior to version 5.6 contains a cross-site scripting vulnerability that allows attackers to inject malicious scripts into the application.
Based on public CVE data (MITRE/NVD).
No signup, no credit card — enter your URL and get a security report in seconds.