CyberRota
← Ana sayfaya dön

CVE-2026-10029

MEDIUM · CVSS 5.3 EPSS %0.31

Kaynak: NVD + CISA KEV + EPSS · Yayınlanma: 2026-06-18T06:16:55.747 · Çekilme zamanı: 2026-06-30T12:26:07.391301+00:00

CyberRota Yorumu

Detaylı analiz gerekiyor.

CVE
CVE-2026-10029
Severity
MEDIUM
CVSS
5.3
EPSS
%0.31
WordPress

Orijinal NVD Açıklaması

The Event Koi Lite – Events Calendar, Event Management, RSVP, and Tickets plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.3.13.1 via the get_events. This makes it possible for unauthenticated attackers to extract sensitive data including virtual meeting URLs, physical location data, latitude/longitude coordinates, Google Maps links, and RSVP configuration belonging to draft, pending, and private events that are otherwise inaccessible via public URLs.