PatchSiren

CoolHappy CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM CoolHappy CVE published 2026-01-06

CVE-2025-69348

A Missing Authorization vulnerability exists in The Events Calendar Countdown Addon version 1.4.15 and earlier. This issue allows attackers to exploit incorrectly configured access control security levels, potentially leading to unintended actions. The vulnerability has a CVSS score of 4.3, indicating a MEDIUM severity level. Defenders should assess exposure and prioritize updates and compensating control [truncated]