
Eventissimo Security & Risk Analysis
wordpress.org/plugins/eventissimoCreate and organize events into your site. Your events also automatically created on Facebook. Import your Facebook Events.
Is Eventissimo Safe to Use in 2026?
Generally Safe
Score 85/100Eventissimo has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The Eventissimo plugin v1.4.3 exhibits a concerning security posture primarily due to a significant number of unprotected entry points. While the plugin has no recorded vulnerability history, which is a positive sign, the static analysis reveals several critical areas for improvement. The presence of two AJAX handlers without authentication checks represents a direct pathway for potential unauthorized actions if exploited. Furthermore, the taint analysis indicating three flows with unsanitized paths, though not flagged as critical or high severity, suggests a potential for unexpected behavior or data manipulation if user-supplied data is not properly validated and sanitized. The limited output escaping (23% properly escaped) also raises concerns about Cross-Site Scripting (XSS) vulnerabilities, allowing attackers to inject malicious scripts through user-generated content or plugin output. While the plugin avoids dangerous functions like `unserialize` in vulnerable ways and utilizes prepared statements for SQL queries, these strengths are overshadowed by the identified weaknesses. The lack of known CVEs is beneficial, but it does not negate the inherent risks posed by the current codebase. Overall, Eventissimo v1.4.3 requires immediate attention to address its insecure entry points and potential data sanitization issues to mitigate significant security risks.
Key Concerns
- 2 AJAX handlers without auth checks
- 3 flows with unsanitized paths
- Only 23% of outputs properly escaped
- Use of 'unserialize' function
Eventissimo Security Vulnerabilities
Eventissimo Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
Eventissimo Attack Surface
AJAX Handlers 2
Shortcodes 1
WordPress Hooks 32
Maintenance & Trust
Eventissimo Maintenance & Trust
Maintenance Signals
Community Trust
Eventissimo Alternatives
The Events Calendar Shortcode & Block
the-events-calendar-shortcode
Add shortcode, block, Elementor and Bricks functionality to The Events Calendar Plugin, so you can easily list and promote your events anywhere.
Events Shortcodes For The Events Calendar
template-events-calendar
Add The Events Calendar shortcode or Gutenberg block to show upcoming events list with event details on any WordPress page using smart event filters.
Import Social Events
import-facebook-events
Import Facebook events into your WordPress website and/or Event Calendar. Nice Display with shortcode & Event widget.
Add infos to The Events Calendar
add-infos-to-the-events-calendar
“Add infos to The Events Calendar” provides a shortcode block to single events for The Events Calendar Free Plugin (by MODERN TRIBE)
CG Events
cg-events
A simple plugin to display custom events using shortcodes.
Eventissimo Developer Profile
3 plugins · 30 total installs
How We Detect Eventissimo
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/eventissimo/css/style.css/wp-content/plugins/eventissimo/css/frontend.css/wp-content/plugins/eventissimo/js/frontend.js/wp-content/plugins/eventissimo/js/frontend.jseventissimo/css/style.css?ver=eventissimo/css/frontend.css?ver=eventissimo/js/frontend.js?ver=HTML / DOM Fingerprints
eventissimo_galleryeventissimo-widget-titleeventissimo_single_event_titleeventissimo_single_event_descriptioneventissimo_single_event_date[eventissimo_gallery[eventissimo_list_events[eventissimo_calendar