VendorsFULLWORKS PLUGINSquick_event_managerany version
Vulnerabilities

FULLWORKS PLUGINS Quick Event Manager any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2023-23979
WordPress Quick Event Manager Plugin <= 9.7.4 is vulnerable to Cross Site Scripting (XSS)
Published 2023-04-06 · Modified
7.1EPSS 0.004
CVE-2023-23491
The Quick Event Manager WordPress Plugin, version < 9.7.5, is affected by a reflected cross-site scripting vulnerability in the 'category' parameter of its 'qem_ajax_calendar' action.
Published 2023-01-20 · Modified
6.1EPSS 0.012
CVE-2022-46863
WordPress Quick Event Manager Plugin <= 9.6.4 is vulnerable to Cross Site Scripting (XSS)
Published 2023-03-28 · Modified
5.9EPSS 0.004
CVE-2023-23974
WordPress Quick Event Manager Plugin <= 9.7.4 is vulnerable to Cross Site Request Forgery (CSRF)
Published 2023-03-01 · Modified
5.4EPSS 0.002