Vulnerabilities > Myeventon > Eventon > 4.5.6

DATE CVE VULNERABILITY TITLE RISK
2025-05-17 CVE-2025-3527 Missing Authorization vulnerability in Myeventon Eventon
The EventON Pro plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check in the 'assets/lib/settings/settings.js' file in all versions up to, and including, 4.9.6.
network
low complexity
myeventon CWE-862
5.4