CVE-2026-13390 | The Events Calendar Plugin up to 6.8.2.1 on WordPress Event Aggregator Import authorization

SecurityVulns

A vulnerability, which was classified as critical, has been found in The Events Calendar Plugin up to 6.8.2.1 on WordPress. This affects an unknown part of the component Event Aggregator Import. The manipulation leads to missing authorization.

This vulnerability is listed as CVE-2026-13390. The attack may be initiated remotely. There is no available exploit.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More