Event Espresso 4 Decaf
event-espresso-decaf · plugin
Known security vulnerabilities for Event Espresso 4 Decaf. Find out in seconds which version runs on your site with WP Lens.
5 known vulnerabilities
latest Jan 22, 2026
Vulnerabilities
- Medium 6.5
WordPress Event Espresso 4 Decaf plugin <= 5.0.37.decaf - Settings Change vulnerability
- Medium 4.3
WordPress Event Espresso plugin <= 5.0.28.decaf - Cross Site Request Forgery (CSRF) vulnerability
- Medium 4.3
Event Espresso 4 Decaf – Event Registration Event Ticketing <= 4.10.46.decaf- Authenticated (Subscriber+) Missing Authorization to Limited Plugin Settings Modif
- Medium 4.3
Event Espresso 4 Decaf <= 4.10.11 - Cross-Site Request Forgery Bypass
- Low 3.7
WordPress Event Espresso 4 Decaf plugin <= 4.10.44.decaf - Bypass vulnerability