eventespresso
Security Risk Profile
16
/100
lowSecurity Risk Score
Comprehensive risk assessment based on 5 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from September 14, 2017 to present
5
Total CVEs
2
Critical+High
0
Exploited
1
Unpatched
Threat Assessment
Avg CVSS
6.7
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
1
Critical/High
Risk Level
16/100
low
Severity Distribution
Critical
1High
1Medium
3Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
1Age Distribution
Common Weaknesses (CWE)
1
SQL Injection
2
2
CSRF
1
3
XSS
1
Most Affected Products
1. Eventespresso Event Espresso Wordpress3
2. Event Espresso Event Espresso 4 Decaf1
3. Eventespresso Event Espresso 4 Decaf Wordpress1
4. Eventespresso Event Espresso Lite Wordpress1
Recent Vulnerabilities
See more →CVE-2024-6883
CVSS 4.3EPSS 0%medium
Event Espresso 4 Decaf – Event Registration Event Ticketing <= 4.10.46.decaf- Authenticated (Subscriber+) Missing Authorization to Limited Plugin Settings Modification
8/21/2024🔧 No Patch
CVE-2021-4404
CVSS 4.3medium
Event Espresso 4 Decaf <= 4.10.11 - Cross-Site Request Forgery Bypass
7/1/2023
CVE-2020-26153
CVSS 6.1medium
7/13/2021
CVE-2017-14760
CVSS 9.8critical
9/27/2017🔧 No Patch
CVE-2017-1002026
CVSS 8.8high
9/14/2017
Monitor eventespresso in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.