Vulnerability CVE-2024-8369


Published: 2024-09-10

Description:
The EventPrime ?? Events Calendar, Bookings and Tickets plugin for WordPress is vulnerable to unauthorized access to Private or Password-protected events due to missing authorization checks in all versions up to, and including, 4.0.4.3. This makes it possible for unauthenticated attackers to view private or password-protected events.

Type:

CWE-862

(Missing Authorization)

 References:
https://www.wordfence.com/threat-intel/vulnerabilities/id/97174ec0-a2b7-455e-9bf8-b6f51546beee?source=cve
https://wordpress.org/plugins/eventprime-event-calendar-management/

Copyright 2026, cxsecurity.com

 

Back to Top