← Back to CVE List

CVE-2024-0235

Published: 2024-01-16T16:15Z
Last Modified: 2024-11-21T08:46Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
The EventON WordPress plugin before 4.5.5, EventON WordPress plugin before 2.2.7 do not have authorisation in an AJAX action, allowing unauthenticated users to retrieve email addresses of any users on the blog > MITRE Terms of Use apply – see LICENSE‑MITRE.txt