Sploitus

CVE-2018-13137

No indexed exploits for CVE-2018-13137 yet

The Events Manager plugin 5.9.4 for WordPress has XSS via the dbem_event_reapproved_email_body parameter to the wp-admin/edit.php?post_type=event&page=events-manager-options URI.

Affected products
Events Manager
Pixelite Events Manager
= 5.9.4
Fix
Available
CVSS 3.0
4.8 MEDIUM
EPSS
1.2% (65th percentile)
Weakness
CWE-79
NVD status
Modified
Published
2019-04-12
CVE-2018-13137 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2018-13137 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2018-13137 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.