Information leakage vulnerability in The Events Calendar 6.8.2

The Events Calendar add-on for WordPress has a security flaw that allows anyone to view private information on versions 6.8.2 and below. This happens because the plugin does not have enough restrictions on which posts can be seen. As a result, unauthorized users can access data from password-protected events that they should not be able to see.

Detected in:

The Events Calendar fixed vulnerable versions: >= * <= 6.8.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.