MEDIUM
fullworks
CVE published 2026-04-08
CVE-2026-39535
A Missing Authorization vulnerability was found in the Display Eventbrite Events plugin for WordPress, affecting versions from n/a through 6.5.6. This issue allows for Exploiting Incorrectly Configured Access Control Security Levels, with a CVSS score of 5.3 and a MEDIUM severity rating. The vulnerability enables attackers to exploit incorrectly configured access control security levels. Users of the plug [truncated]