Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

Stellarwp

10 known vulnerabilities

2
CRITICAL
2
HIGH
6
MEDIUM

Top Products

the events calendar 9 image widget 1
10 CVEs
6.4
CVE-2025-5144

The The Events Calendar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘data-date-*’ paramete

4.8
CVE-2024-8493

The Events Calendar WordPress plugin before 6.6.4 does not sanitise and escape some of its settings, which could allow h

5.3
CVE-2024-5333

The Events Calendar WordPress plugin before 6.8.2.1 is missing access checks in the REST API, allowing for unauthenticat

4.8
CVE-2024-10939

The Image Widget WordPress plugin before 4.4.11 does not sanitise and escape some of its Image Widget settings, which co

7.2
CVE-2024-6931

The The Events Calendar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via RSVP name field in all ver

9.8
CVE-2024-8275

The The Events Calendar plugin for WordPress is vulnerable to SQL Injection via the 'order' parameter of the 'tribe_has_

9.1
CVE-2024-4180

The Events Calendar WordPress plugin before 6.4.0.1 does not properly sanitize user-submitted content when rendering som

5.3
CVE-2023-6557

The The Events Calendar plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and

7.5
CVE-2023-6203

The Events Calendar WordPress plugin before 6.2.8.1 discloses the content of password protected posts to unauthenticated

6.1
CVE-2019-15109

The the-events-calendar plugin before 4.8.2 for WordPress has XSS via the tribe_paged URL parameter.

Frequently Asked Questions

How many CVEs affect Stellarwp?

Stellarwp has 10 CVE records in our database, including 2 critical and 2 high severity vulnerabilities.

What are the most severe Stellarwp vulnerabilities?

Stellarwp has 2 critical severity (CVSS 9.0+) and 2 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.

How can I scan for Stellarwp vulnerabilities?

CyberStrike's AI-powered security agents automatically detect vulnerabilities in Stellarwp products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.

Detect Stellarwp Vulnerabilities

CyberStrike scans your infrastructure for Stellarwp vulnerabilities and provides real-time remediation guidance.

Get Started