RSVP and Event Management Plugin, CVE-2026-27398
- CVE, Research URL
- Home page URL
- Application
- Published on
- May 26, 2026
- Research Description
- Missing Authorization vulnerability in WP Chill RSVP and Event Management allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects RSVP and Event Management: from n/a through 2.7.16.
- Affected versions
-
max 2.7.17.
- Status
-
vulnerable
| Previous vulnerability researches |
|---|
| RSVPMaker Volunteer Roles (CVE-2025-23531) , Jan 29, 2025 |