Eventin – Event Calendar, Event Registration, Tickets & Booking (AI Powered)

Vulnerabilities 22Slug wp-event-solutionLatest version 4.1.12WordPress.org →

Minimum safe version

4.1.9

Update to 4.1.9 or later to address 22 fixable vulnerabilities

Latest available4.1.12
N/A
2026-04-29< 4.1.9

Eventin – Event Calendar, Event Registration, Tickets & Booking (AI Powered) <= 4.1.8 - Missing Authorization

High 7.2
2025-08-23< 4.0.38

Event Manager, Events Calendar, Booking, Registrations and Tickets – Eventin <= 4.0.37 - Unauthenticated Server-Side Request Forgery

N/A
2026-04-13< 4.1.9

Eventin – Events Calendar, Event Booking, Ticket & Registration (AI Powered) <= 4.1.8 Missing Authorization to Authenticated (Subscriber+) Order Information Exposure

High 8.8
2025-08-08< 4.0.35

Eventin <= 4.0.34 - Authenticated (Contributor+) Privilege Escalation via User Email Change/Account Takeover

Critical 9.8
2025-05-14< 4.0.27

CVE-2025-47445

High 7.5
2025-05-08< 4.0.27

Event Manager, Events Calendar, Tickets, Registrations – Eventin <= 4.0.26 - Unauthenticated Arbitrary File Read

High 8.8
2025-03-20< 4.0.25

Event Manager, Events Calendar, Tickets, Registrations – Eventin <= 4.0.24 - Authenticated (Contributor+) Local File Inclusion

Medium 5.3
2025-03-20< 4.0.25

Event Manager, Events Calendar, Tickets, Registrations – Eventin <= 4.0.24 - Missing Authorization to Unauthenticated Payment Status Update