CVE-2026-105068: WordPress Events Manager plugin <= 7.4.5 - Sensitive Data Exposure vulnerability
Published Oct 5, 2026
·Updated
Insertion of Sensitive Information Into Sent Data vulnerability in Pixelite Events Manager events-manager allows Retrieve Embedded Sensitive Data.This issue affects Events Manager: from n/a through 7.4.5.
Affected Software
1 affected component
Pixelite Events Manager<=7.4.5
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
WordPress Events Manager pluginto a version that resolves this vulnerability.Fixed in 7.4.6
Event History
Oct 5, 2026
CVE Published
via MITRE·08:26 AM
Data Sourced
via MITRE·08:26 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·09:17 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Who can exploit this issue?
The CVSS vector indicates that it can be exploited remotely over the network without authentication or user interaction. Successful exploitation may expose sensitive information, with no stated impact on integrity or availability.
2
Which releases are affected?
Pixelite Events Manager is affected through version 7.4.5. The available data does not identify a fixed version.