Vulnerabilities in WP Event Manager
6 resultsCVE-2023-47697HIGHWordPress WP Event Manager Plugin <= 3.1.39 is vulnerable to Cross Site Scripting (XSS)EPSS 0.4%CVE-2025-48125HIGHWordPress WP Event Manager plugin <= 3.1.51 - Local File Inclusion VulnerabilityEPSS 0.4%CVE-2025-32225MEDIUMWordPress WP Event Manager plugin <= 3.2.0 - Broken Access Control vulnerabilityEPSS 0.4%CVE-2023-49181MEDIUMWordPress WP Event Manager Plugin <= 3.1.40 is vulnerable to Cross Site Scripting (XSS)EPSS 0.4%CVE-2023-52118MEDIUMWordPress WP User Profile Avatar Plugin <= 1.0 is vulnerable to Cross Site Scripting (XSS)EPSS 0.3%CVE-2025-49980MEDIUMWordPress WP User Profile Avatar plugin <= 1.0.6 - Broken Access Control VulnerabilityEPSS 0.2%