CVE-2017-17616
Event Search Script 1.0 has SQL Injection via the /event-list city parameter.
Date published : 2017-12-13
https://www.exploit-db.com/exploits/43279/
https://packetstormsecurity.com/files/145306/Event-Search-Script-1.0-SQL-Injection.html