
CG Events Security & Risk Analysis
wordpress.org/plugins/cg-eventsA simple plugin to display custom events using shortcodes.
Is CG Events Safe to Use in 2026?
Generally Safe
Score 100/100CG Events has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "cg-events" plugin v1.0.4 demonstrates a generally strong security posture based on the provided static analysis and vulnerability history. The absence of any known CVEs, critical taint flows, dangerous functions, or file operations is highly positive. Furthermore, the plugin utilizes prepared statements for all SQL queries and has a good percentage of properly escaped output, indicating an awareness of common web vulnerabilities.
However, there are areas for improvement. The presence of one shortcode presents an attack vector, although it's noted as protected. The relatively low number of capability checks (1) and nonce checks (4) across the entry points (1 total) could indicate potential weaknesses if the shortcode or other unexamined entry points have complex logic that isn't adequately secured. The 83% output escaping rate, while good, means that 17% of outputs are not properly escaped, which could lead to cross-site scripting (XSS) vulnerabilities if those unescaped outputs contain user-supplied data.
Overall, "cg-events" v1.0.4 is a plugin with a strong foundation, but the limited security checks and a small percentage of unescaped output warrant careful consideration and potential further investigation. The plugin's history of zero vulnerabilities is a significant strength, but it should not lead to complacency, as static analysis alone cannot catch all potential issues.
Key Concerns
- Output not properly escaped
- Limited capability/nonce checks
CG Events Security Vulnerabilities
CG Events Code Analysis
Output Escaping
Data Flow Analysis
CG Events Attack Surface
Shortcodes 1
WordPress Hooks 13
Maintenance & Trust
CG Events Maintenance & Trust
Maintenance Signals
Community Trust
CG Events Alternatives
The Events Calendar Shortcode & Block
the-events-calendar-shortcode
Add shortcode, block, Elementor and Bricks functionality to The Events Calendar Plugin, so you can easily list and promote your events anywhere.
Events Shortcodes For The Events Calendar
template-events-calendar
Add The Events Calendar shortcode or Gutenberg block to show upcoming events list with event details on any WordPress page using smart event filters.
Add infos to The Events Calendar
add-infos-to-the-events-calendar
“Add infos to The Events Calendar” provides a shortcode block to single events for The Events Calendar Free Plugin (by MODERN TRIBE)
Eventissimo
eventissimo
Create and organize events into your site. Your events also automatically created on Facebook. Import your Facebook Events.
The Events Calendar
the-events-calendar
The Events Calendar: #1 calendar plugin for WordPress. Create/manage events (virtual too!) on your site with the free plugin.
CG Events Developer Profile
1 plugin · 0 total installs
How We Detect CG Events
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/cg-events/assets/admin-functions.jscg-events/assets/admin-functions.js?ver=HTML / DOM Fingerprints
name="cg_event_type"id="cg_event_type"name="cg_event_single_date"id="cg_event_single_date"name="cg_event_start_date"id="cg_event_start_date"+4 more