First published: Tue Oct 24 2023(Updated: )
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in EventPrime EventPrime – Events Calendar, Bookings and Tickets plugin <= 3.1.5 versions.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Metagauss Eventprime | <=3.1.5 |
Update to 3.1.6 or a higher version.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-45637.
The title of the vulnerability is Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in EventPrime EventPrime – Events Calendar, Bookings and Tickets plugin.
The affected software is EventPrime EventPrime – Events Calendar, Bookings and Tickets plugin version <= 3.1.5.
The severity of the vulnerability is high with a CVSS score of 6.1.
To fix this vulnerability, update the EventPrime EventPrime – Events Calendar, Bookings and Tickets plugin to a version higher than 3.1.5.