Skip to content

Known CVE

WordPress Eventin (Themewinter) ≤ 4.0.26 - Arbitrary File Download

Themewinter Eventin contains a path traversal caused by relative path manipulation, letting attackers access arbitrary files on the server, exploit requires no specific privileges or user interaction.

CVE-2025-47445

High2025CVSS 7.5CWE-23

cve2025 · wordpress · wp · wp-plugin · eventin · lfi · wp-event-solution · vkev

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website