PLUGIN SECURITY
Is JetSmartFilters safe?
Convert WordPress dates to Jalali calendar with Gutenberg support, Persian digits, and 3rd-party plugin integrations.
What this plugin does
- Slug:
jet-smart-filters - Author: Mohammadreza Ahm
- 3000+ active installs
- 100/100 rating (5 reviews on wordpress.org)
- 18159 all-time downloads
- On WordPress.org since 2025-09-16
calendargutenbergJalalishamsiشمسی
Maintenance status
- Latest known version: 1.4.1
- Last updated: 2026-08-29 8:28am GMT
- Tested up to WordPress: 7.0.4
- Requires PHP: 7.2+
Known vulnerabilities
8 known CVEs on file for JetSmartFilters. Reported between 2023 and 2026.
| CVE | Vulnerability | Type | Severity | Affected | Fixed in | Published | Status |
|---|---|---|---|---|---|---|---|
| CVE-2026-56067 | JetSmartFilters [jet-smart-filters] < 3.8.3.1 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') | Critical 9.3 | < 3.8.3.1 | 3.8.3.1 | 2026-06-25 | ⚠ update needed |
| CVE-2026-48875 | JetSmartFilters [jet-smart-filters] < 3.8.1.1 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') | Critical 9.3 | < 3.8.1.1 | 3.8.1.1 | 2026-06-02 | ⚠ update needed |
| CVE-2025-54009 | JetSmartFilters [jet-smart-filters] < 3.6.8.1 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') | Medium 6.5 | < 3.6.8.1 | 3.6.8.1 | 2025-07-16 | ⚠ update needed |
| CVE-2025-54008 | JetSmartFilters [jet-smart-filters] < 3.6.7.1 | Insertion of Sensitive Information Into Sent Data | Medium 6.5 | < 3.6.7.1 | 3.6.7.1 | 2025-07-16 | ⚠ update needed |
| CVE-2025-30963 | JetSmartFilters [jet-smart-filters] < 3.6.4 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') | Medium 6.5 | < 3.6.4 | 3.6.4 | 2025-03-29 | ⚠ update needed |
| CVE-2023-48762 | JetSmartFilters [jet-smart-filters] < 3.2.2.1 | Cross-Site Request Forgery (CSRF) | Medium 6.3 | < 3.2.2.1 | 3.2.2.1 | 2023-11-28 | ⚠ update needed |
| CVE-2023-48760 | JetSmartFilters [jet-smart-filters] < 3.2.2.1 | Missing Authorization | High 8.2 | < 3.2.2.1 | 3.2.2.1 | 2023-11-28 | ⚠ update needed |
| CVE-2023-48761 | JetSmartFilters [jet-smart-filters] < 3.2.2.1 | Missing Authorization | Medium 6.3 | < 3.2.2.1 | 3.2.2.1 | 2023-11-28 | ⚠ update needed |
How to fix it
Keep JetSmartFilters updated — 1.4.1 is the latest version on wordpress.org, and each CVE above lists the exact release that fixed it ("Fixed in").
This is the plugin's full known vulnerability history, not a scan of any specific installation — run a free scan of your own site to check your exact installed version.
Safer / more established alternatives
- The Events Calendar — 600000+ active installs — 84/100 (2453)
- پارسی دیت – Parsi Date — 100000+ active installs — 92/100 (129) — max PHP <8.0
- Events Manager – Calendar, Bookings, Tickets, and more! — 60000+ active installs — 84/100 (548) — max PHP <8.0
- SimplyBook.me – Booking and reservations calendar — 30000+ active installs — 90/100 (17) — max PHP 8.4
- Timetable and Event Schedule by MotoPress — 30000+ active installs — 86/100 (69) — max PHP <8.0
Check your own WordPress site
Run a free passive scan now, or create a free account and install the WP Clinic plugin for a deep scan of your whole hosting account and AI-assisted repair.