← WordPress Vulnerabilities
WordPress security by component

WooEvents - Calendar and Event Booking

WooEvents - Calendar and Event Booking is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Sep 24, 2024; the highest CVE/CNA score is 9.1.

Plugin slug: wooevents

CVE-2024-8671: WooEvents - Calendar and Event Booking: Code execution

WooEvents - Calendar and Event Booking is affected by code execution. The vulnerable path is reachable without authentication. Successful exploitation can run attacker-controlled code in the WordPress hosting account.

PublishedSep 24, 2024
Safe version guidanceSee mitigation notes
Safe version
Sep 24, 2024 CVE-2024-8671
WooEvents - Calendar and Event Booking: Code execution
WooEvents - Calendar and Event Booking is affected by code execution. The vulnerable path is reachable without authentication. Successful exploitation can run attacker-controlled code in the WordPress hosting account.
See mitigation notes
CVE9.1
NVD9.1