CVE-2026-39536: WordPress RSVP and Event Management plugin <= 2.7.16 - Sensitive Data Exposure vulnerability
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in WP Chill RSVP and Event Management rsvp allows Retrieve Embedded Sensitive Data.This issue affects RSVP and Event Management: from n/a through <= 2.7.16.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-39536?
CVE-2026-39536 is classified as a high severity vulnerability due to its potential for exposing sensitive system information.
How do I fix CVE-2026-39536?
To fix CVE-2026-39536, update the WP Chill RSVP and Event Management plugin to version 2.7.17 or higher.
What systems are affected by CVE-2026-39536?
CVE-2026-39536 affects versions of the WP Chill RSVP and Event Management plugin up to and including 2.7.16.
What type of data is exposed in CVE-2026-39536?
CVE-2026-39536 exposes sensitive system information that could be accessed by unauthorized users.
Is there a CVE report for CVE-2026-39536?
Yes, CVE-2026-39536 has a detailed report available through reputable CVE databases.