Metrics
Affected Vendors & Products
Solution
Update the WordPress WordPress Event Manager, Event Calendar and Booking Plugin plugin to the latest available version (at least 4.0.25).
Workaround
No workaround given by the vendor.
Sat, 16 Aug 2025 21:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Themefunction
Themefunction wordpress Event Manager Event Calendar And Booking Plugin Wordpress Wordpress wordpress |
|
Vendors & Products |
Themefunction
Themefunction wordpress Event Manager Event Calendar And Booking Plugin Wordpress Wordpress wordpress |
Thu, 14 Aug 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 14 Aug 2025 10:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in themefunction WordPress Event Manager, Event Calendar and Booking Plugin allows Stored XSS. This issue affects WordPress Event Manager, Event Calendar and Booking Plugin: from n/a through 4.0.24. | |
Title | WordPress WordPress Event Manager, Event Calendar and Booking Plugin Plugin <= 4.0.24 - Cross Site Scripting (XSS) Vulnerability | |
Weaknesses | CWE-79 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-08-14T14:47:21.874Z
Reserved: 2025-06-19T10:02:39.647Z
Link: CVE-2025-52730

Updated: 2025-08-14T13:32:26.478Z

Status : Awaiting Analysis
Published: 2025-08-14T11:15:42.617
Modified: 2025-08-14T13:11:53.633
Link: CVE-2025-52730

No data.

Updated: 2025-08-16T21:41:20Z