EventonAI Security & Risk Analysis

wordpress.org/plugins/eventonai

Empowering EventON with Artificial Intelligence. Advanced features and useful, time-saving functions using OpenAI.

0 active installs v1.5.0 PHP 5.6+ WP 5.6+ Updated Dec 11, 2024
aiartificial-intelligenceeventonopenaitickets
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is EventonAI Safe to Use in 2026?

Generally Safe

Score 92/100

EventonAI has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The plugin "eventonai" v1.5.0 exhibits a generally good security posture, with many best practices observed such as a high percentage of prepared SQL statements and properly escaped output. The static analysis reveals no directly exploitable vulnerabilities like unauthenticated AJAX handlers or REST API endpoints. The absence of known CVEs and a history of no recorded vulnerabilities is a strong positive indicator, suggesting a developer who is either diligent or has not yet attracted attention from vulnerability researchers.

However, there are areas for concern. The taint analysis identified two "high severity" flows with unsanitized paths, which could potentially lead to issues if these paths are exposed to user input. While the analysis doesn't specify the exact nature of these flows, it warrants further investigation. Additionally, the presence of a bundled library (Freemius v1.0) raises a potential risk if this library itself has known, unpatched vulnerabilities, although this is not explicitly stated in the provided data. The lack of capability checks on any entry points, while minimal in this case due to the limited attack surface, could become a risk if new entry points are added in the future without proper authorization.

In conclusion, "eventonai" v1.5.0 appears to be a relatively secure plugin with a strong track record. The developer is employing good coding practices. The primary risks lie in the two identified high-severity taint flows which require deeper inspection, and the potential for vulnerabilities within the bundled Freemius library. The absence of capability checks is a minor architectural concern given the current limited attack surface.

Key Concerns

  • High severity taint flows with unsanitized paths
  • Bundled library Freemius v1.0 potentially outdated
  • No capability checks on entry points
Vulnerabilities
None known

EventonAI Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

EventonAI Release Timeline

v1.5.0Current
v1.4.0
v1.3.0
v1.2.0
v1.1.0
v1.0.0
Code Analysis
Analyzed Mar 17, 2026

EventonAI Code Analysis

Dangerous Functions
0
Raw SQL Queries
2
22 prepared
Unescaped Output
35
377 escaped
Nonce Checks
16
Capability Checks
0
File Operations
0
External Requests
5
Bundled Libraries
1

Bundled Libraries

Freemius1.0

SQL Query Safety

92% prepared24 total queries

Output Escaping

92% escaped412 total outputs
Data Flows · Security
3 unsanitized

Data Flow Analysis

5 flows3 with unsanitized paths
momo_acgwc_generate_template_edit_form (search\class-momo-acgeo-search-logger.php:69)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

EventonAI Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[momo_add_single_chatbot] chatbot\class-momo-acg-chatbot-shortcodes.php:14
WordPress Hooks 37
actionmomo_add_submenu_to_momoacgeoautoblog\admin\class-momo-acgeo-rssfeed-admin.php:12
actionadmin_initautoblog\admin\class-momo-acgeo-rssfeed-admin.php:14
actionadmin_enqueue_scriptsautoblog\admin\class-momo-acgeo-rssfeed-admin.php:16
filtermomo_acg_add_extra_screens_for_body_classautoblog\admin\class-momo-acgeo-rssfeed-admin.php:17
actionmomo_acg_rssfeed_hookautoblog\class-momo-acgeo-rssfeed-cron.php:24
actionmomo_acg_autoblog_hookautoblog\class-momo-acgeo-rssfeed-cron.php:25
actionmomo_acg_admin_tab_lichatbot\admin\class-momo-acg-chatbot-admin.php:13
actionmomo_acg_admin_tab_contentchatbot\admin\class-momo-acg-chatbot-admin.php:14
actionadmin_initchatbot\admin\class-momo-acg-chatbot-admin.php:16
actionadmin_enqueue_scriptschatbot\admin\class-momo-acg-chatbot-admin.php:18
actionwp_enqueue_scriptschatbot\class-momo-acg-chatbot-frontend.php:20
actionrest_api_initchatbot\class-momo-acg-chatbot-frontend.php:22
actionplugins_loadedclass-momo-acg-for-eventon.php:147
actionafter_uninstallclass-momo-acg-for-eventon.php:148
actioninitclass-momo-acg-for-eventon.php:169
actionadmin_initclass-momo-acg-for-eventon.php:210
actionadmin_menuincludes\admin\class-momo-acg-eo-admin-init.php:14
actionadmin_enqueue_scriptsincludes\admin\class-momo-acg-eo-admin-init.php:15
actionadmin_initincludes\admin\class-momo-acg-eo-admin-init.php:17
actionadmin_footerincludes\admin\class-momo-acg-eo-admin-init.php:18
actionadmin_menuincludes\admin\class-momo-acg-eo-admin-init.php:20
actionadd_meta_boxesincludes\admin\metabox\class-momo-acg-eo-metabox.php:44
actionrest_api_initincludes\class-momo-acg-eo-rest-api.php:14
actionadmin_initsearch\admin\class-momo-acgeo-search-admin.php:12
actionmomo_add_submenu_to_momoacgeosearch\admin\class-momo-acgeo-search-admin.php:13
actionadmin_enqueue_scriptssearch\admin\class-momo-acgeo-search-admin.php:15
filtermomo_acgeo_add_data_to_admin_localesearch\admin\class-momo-acgeo-search-admin.php:17
actionmomo_store_email_template_eventsearch\class-momo-acgeo-search-background.php:19
actionupdate_option_momo_acg_eo_searchlog_settingssearch\class-momo-acgeo-search-log-cron.php:23
actionmomo_delete_old_search_logs_cronsearch\class-momo-acgeo-search-log-cron.php:25
actionwp_enqueue_scriptssearch\class-momo-acgeo-search-logger.php:35
filterevo_generate_events_resultssearch\class-momo-acgeo-search-logger.php:37
actionmomo_acgwc_activatesearch\class-momo-acgeo-search-table.php:59
actionmomo_acgwc_deactivatesearch\class-momo-acgeo-search-table.php:60
actionadmin_noticessearch\class-momo-acgeo-search-table.php:62
actionadmin_initsearch\class-momo-acgeo-search-table.php:64
actionadmin_noticessearch\class-momo-acgeo-search-table.php:79

Scheduled Events 2

momo_store_email_template_event
momo_delete_old_search_logs_cron
Maintenance & Trust

EventonAI Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedDec 11, 2024
PHP min version5.6
Downloads975

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

EventonAI Developer Profile

Ashish

8 plugins · 690 total installs

86
trust score
Avg Security Score
89/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect EventonAI

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/eventonai/assets/css/momo-acg-for-eventon.css/wp-content/plugins/eventonai/assets/js/momo-acg-for-eventon.js/wp-content/plugins/eventonai/chatbot/assets/css/chatbot.css/wp-content/plugins/eventonai/chatbot/assets/js/chatbot.js/wp-content/plugins/eventonai/search/assets/css/search.css/wp-content/plugins/eventonai/search/assets/js/search.js
Script Paths
/wp-content/plugins/eventonai/assets/js/momo-acg-for-eventon.js/wp-content/plugins/eventonai/chatbot/assets/js/chatbot.js/wp-content/plugins/eventonai/search/assets/js/search.js
Version Parameters
ver=/wp-content/plugins/eventonai/assets/css/momo-acg-for-eventon.css?ver=ver=/wp-content/plugins/eventonai/assets/js/momo-acg-for-eventon.js?ver=ver=/wp-content/plugins/eventonai/chatbot/assets/css/chatbot.css?ver=ver=/wp-content/plugins/eventonai/chatbot/assets/js/chatbot.js?ver=ver=/wp-content/plugins/eventonai/search/assets/css/search.css?ver=ver=/wp-content/plugins/eventonai/search/assets/js/search.js?ver=

HTML / DOM Fingerprints

CSS Classes
momo-acg-chatbot-containermomo-acg-chatbot-wrappermomo-acg-chatbot-messagesmomo-acg-chatbot-inputmomo-acg-search-results-wrapper
HTML Comments
<!-- Chatbot Init --><!-- Search Log v1.5.0 --><!-- RSS Feed / Auto Blog -->
Data Attributes
data-momoacg-settings
JS Globals
momo_acg_chatbot_paramsmomoacgeo_settings
REST Endpoints
/wp-json/momoacgeo/v1/generate_event_description/wp-json/momoacgeo/v1/get_chat_history/wp-json/momoacgeo/v1/get_search_logs/wp-json/momoacgeo/v1/save_chat_message
Shortcode Output
[momo_acg_chatbot][momo_acg_search_logs]
FAQ

Frequently Asked Questions about EventonAI