Event Booking Manager for WooCommerce

Vulnerabilities 29Slug mage-eventpressLatest version 5.3.4WordPress.org →

Minimum safe version

5.1.9

Update to 5.1.9 or later to address 29 fixable vulnerabilities

Latest available5.3.4
Critical 9.8
2026-02-19< 5.1.2

CVE-2026-23549

Medium 5.3
2025-11-30< 5.0.5

WpEvently <= 5.0.4 - Missing Authorization

Medium 5.3
2025-12-04< 5.0.5

WpEvently <= 5.0.4 - Missing Authorization

Medium 6.4
2025-06-07< 4.4.3

WpEvently <= 4.4.2 - Authenticated (Contributor+) Stored Cross-Site Scripting

N/A
< 4.1.2

WordPress Event Manager for WooCommerce Plugin <= 4.1.1 is vulnerable to PHP Object Injection

N/A
< 3.5.3

Event Manager for WooCommerce &lt; 3.5.3 - Unauthenticated Arbitrary Options Reset

N/A
< 3.5.3

Event Manager for WooCommerce &lt; 3.5.3 - Unauthenticated Arbitrary Elementor Template Import

N/A
2021-11-03< 3.5.3

Event Manager and Tickets Selling Plugin for WooCommerce < 3.5.3 - Missing Authorization

N/A
2021-11-03< 3.5.3

Event Manager and Tickets Selling Plugin for WooCommerce < 3.5.3 - Arbitrary Settings Change

N/A
2021-11-03< 3.5.3

WordPress Event Manager for WooCommerce plugin <= 3.5.1 - Unauthenticated Arbitrary Options Reset vulnerability

N/A
2021-11-03< 3.5.3

WordPress Event Manager for WooCommerce plugin <= 3.5.1 - Unauthenticated Arbitrary Elementor Template Import vulnerability