CVE-2024-8700

Publication date

2025-05-15 20:07:17

Family

WPScan

State

PUBLISHED

Description

The Event Calendar WordPress plugin through 1.0.4 does not check for authorization on delete actions, allowing unauthenticated users to delete arbitrary calendars.