CVE Vulnerabilities

CVE-2024-8700

Published: May 15, 2025 | Modified: Jun 04, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

The Event Calendar WordPress plugin through 1.0.4 does not check for authorization on delete actions, allowing unauthenticated users to delete arbitrary calendars.

Affected Software

Name Vendor Start Version End Version
Event_calendar Total-soft * 1.0.4 (including)

References