Metrics
Affected Vendors & Products
| Source | ID | Title | 
|---|---|---|
  EUVD | 
                EUVD-2025-12315 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Bastien Ho Event post allows DOM-Based XSS. This issue affects Event post: from n/a through 5.9.11. | 
Solution
Update the WordPress Event post plugin to the latest available version (at least 5.10.0).
Workaround
No workaround given by the vendor.
Wed, 30 Apr 2025 17:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Avecnous
         Avecnous event Post  | 
|
| CPEs | cpe:2.3:a:avecnous:event_post:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products | 
        
        Avecnous
         Avecnous event Post  | 
Tue, 22 Apr 2025 17:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        ssvc
         
  | 
Tue, 22 Apr 2025 10:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Bastien Ho Event post allows DOM-Based XSS. This issue affects Event post: from n/a through 5.9.11. | |
| Title | WordPress Event post <= 5.9.11 - Cross Site Scripting (XSS) Vulnerability | |
| Weaknesses | CWE-79 | |
| References | 
         | |
| Metrics | 
        
        cvssV3_1
         
  | 
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-04-22T17:01:25.813Z
Reserved: 2025-04-22T08:46:38.826Z
Link: CVE-2025-46228
Updated: 2025-04-22T17:01:20.624Z
Status : Analyzed
Published: 2025-04-22T10:15:15.800
Modified: 2025-04-30T16:35:49.033
Link: CVE-2025-46228
No data.
                        OpenCVE Enrichment
                    No data.
 EUVD