This issue affects RSVP and Event Management: from n/a through 2.7.16.
Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update the WordPress RSVP and Event Management Plugin to the latest available version (at least 2.7.17).
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 26 May 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 25 May 2026 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wordpress
Wordpress wordpress Wpchill Wpchill rsvp And Event Management |
|
| Vendors & Products |
Wordpress
Wordpress wordpress Wpchill Wpchill rsvp And Event Management |
Mon, 25 May 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Missing Authorization vulnerability in WP Chill RSVP and Event Management allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects RSVP and Event Management: from n/a through 2.7.16. | |
| Title | WordPress RSVP and Event Management plugin <= 2.7.16 - Broken Access Control vulnerability | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-05-26T15:19:25.282Z
Reserved: 2026-02-19T09:52:08.214Z
Link: CVE-2026-27398
Updated: 2026-05-26T15:19:19.486Z
Status : Deferred
Published: 2026-05-25T22:16:33.510
Modified: 2026-06-17T10:27:07.873
Link: CVE-2026-27398
No data.
OpenCVE Enrichment
Updated: 2026-05-25T23:30:26Z