
Events Calendar Security & Risk Analysis
wordpress.org/plugins/manags-eventsEvent management system using jquery -ui datepicker,timepicker addon,provides short-code,widget support.
Is Events Calendar Safe to Use in 2026?
Generally Safe
Score 85/100Events Calendar has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "manags-events" plugin v2.1 exhibits a mixed security posture. On the positive side, it has no known historical vulnerabilities and doesn't appear to perform file operations or external HTTP requests, reducing common attack vectors. The absence of dangerous functions and the sole SQL query utilizing prepared statements are also good signs.
However, significant concerns arise from the static analysis. The most critical finding is that 100% of the plugin's 30 output operations are not properly escaped. This is a major risk, as it leaves the plugin highly susceptible to Cross-Site Scripting (XSS) vulnerabilities, allowing attackers to inject malicious scripts into content displayed to users.
Furthermore, the plugin lacks nonce checks and capability checks entirely, and it has one shortcode as an entry point with no apparent authentication or permission controls. While the static analysis reported zero unprotected entry points and zero flows with unsanitized paths, the complete absence of these fundamental security mechanisms on its single entry point is a glaring weakness. The vulnerability history being clean is a positive, but it doesn't negate the identified weaknesses in the current code.
Key Concerns
- All outputs are unescaped
- No nonce checks implemented
- No capability checks implemented
- Shortcode entry point without auth checks
Events Calendar Security Vulnerabilities
Events Calendar Code Analysis
SQL Query Safety
Output Escaping
Events Calendar Attack Surface
Shortcodes 1
WordPress Hooks 6
Maintenance & Trust
Events Calendar Maintenance & Trust
Maintenance Signals
Community Trust
Events Calendar Alternatives
Timetable and Event Schedule by MotoPress
mp-timetable
Smart event organizer and time-management tool with a clean minimalist design for featuring your timetables and upcoming events.
Event Organiser
event-organiser
Create and maintain events, including complex reoccurring patterns, venue management (with Google Maps or OpenStreetMap), calendars and customisable e …
The Events Calendar Shortcode & Block
the-events-calendar-shortcode
Add shortcode, block, Elementor and Bricks functionality to The Events Calendar Plugin, so you can easily list and promote your events anywhere.
Events Widgets For Elementor And The Events Calendar
events-widgets-for-elementor-and-the-events-calendar
The Events Calendar Elementor widgets help you manage and display an upcoming events list with date, time, venue and event ticket booking details.
Events Shortcodes For The Events Calendar
template-events-calendar
Add The Events Calendar shortcode or Gutenberg block to show upcoming events list with event details on any WordPress page using smart event filters.
Events Calendar Developer Profile
1 plugin · 90 total installs
How We Detect Events Calendar
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/manags-events/assets/css/events-ui.css/wp-content/plugins/manags-events/assets/js/events-ui-timepicker-addon.js/wp-content/plugins/manags-events/assets/js/events-ui-sliderAccess.jsmanags-events/assets/css/events-ui.css?ver=manags-events/assets/js/events-ui-timepicker-addon.js?ver=manags-events/assets/js/events-ui-sliderAccess.js?ver=HTML / DOM Fingerprints
datepickertimepickerwidget_Events_SliderEvents_Sliderevents-sliderjcarousel-wrapperjcarouseldata-dateformatdata-timeformatgaSliderWrap