Project Subscriptions
No advisories yet.
Solution
Update the WordPress EventPrime Plugin to the latest available version (at least 4.2.8.4).
Workaround
No workaround given by the vendor.
Thu, 19 Mar 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 19 Mar 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Theeventprime
Theeventprime eventprime Wordpress Wordpress wordpress |
|
| Vendors & Products |
Theeventprime
Theeventprime eventprime Wordpress Wordpress wordpress |
Thu, 19 Mar 2026 07:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Missing Authorization vulnerability in EventPrime allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects EventPrime: from n/a through 4.2.8.3. | |
| Title | WordPress EventPrime plugin <= 4.2.8.3 - Payment Bypass vulnerability | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2026-03-19T14:03:06.409Z
Reserved: 2026-02-02T12:20:39.016Z
Link: CVE-2026-25312
Updated: 2026-03-19T14:02:56.320Z
Status : Awaiting Analysis
Published: 2026-03-19T08:16:18.940
Modified: 2026-03-19T13:25:00.570
Link: CVE-2026-25312
No data.
OpenCVE Enrichment
Updated: 2026-03-19T08:54:27Z