Pricing
Case studies
Login
Start trial
EventON
Ashan Perera
Developer
2.5.1
Latest version
6,000
Installations
No date
Last updated
WordPress Plugin
No VDP
See changelog
Claim ownership
Report vulnerability
Vulnerabilities
Security Contributors
Vulnerability history
0 present
21 patched
7 Mitigation rules
Reflected XSS vulnerability
< 2.2.8
30/01/2026
Unauthenticated Email Address Disclosure vulnerability
< 2.2.8
30/01/2026
Unauthenticated Virtual Event Settings Update vulnerability
< 2.2.9
30/01/2026
Unauthenticated Virtual Event Password Disclosure vulnerability
< 2.2.8
30/01/2026
Unauthenticated Arbitrary Post Metadata Update vulnerability
< 2.2.8
30/01/2026
Sensitive Data Exposure vulnerability
<= 2.4.7
14/08/2025
Broken Access Control Vulnerability
<= 2.4.4
16/05/2025
Local File Inclusion Vulnerability
<= 2.4.1
07/05/2025
Local File Inclusion vulnerability
<= 2.4
09/04/2025
Local File Inclusion vulnerability
<= 2.4.1
04/04/2025
Admin+ Stored XSS vulnerability
< 2.2.17
09/09/2024
Admin+ Stored Cross-Site Scripting via event subtitle vulnerability
< 2.2.15
15/07/2024
Missing Authorization to Unauthenticated Stored Cross-Site Scripting and Plugin Settings Updates vulnerability
<= 2.2.15
09/07/2024
Cross Site Scripting (XSS) vulnerability
<= 2.2.14
30/04/2024
Cross-Site Request Forgery via evo_eventpost_update_meta vulnerability
<= 2.2.7
10/01/2024
Cross-Site Request Forgery via save_virtual_event_settings vulnerability
<= 2.2.8
10/01/2024
Missing Authorization to Arbitrary Post Meta Update via evo_eventpost_update_meta
<= 2.2.7
10/01/2024
Reflected Cross-Site Scripting vulnerability
<= 2.2.2
21/10/2023
Admin+ Stored XSS vulnerability
< 2.2
17/10/2023
Unauthenticated Event Access vulnerability
< 2.1.2
22/06/2023
Unauthenticated Post Access via IDOR vulnerability
< 2.1.2
22/06/2023