Known CVE
WordPress Eventin (Themewinter) ≤ 4.0.26 - Arbitrary File Download
Themewinter Eventin contains a path traversal caused by relative path manipulation, letting attackers access arbitrary files on the server, exploit requires no specific privileges or user interaction.
CVE-2025-47445
High2025CVSS 7.5CWE-23
cve2025 · wordpress · wp · wp-plugin · eventin · lfi · wp-event-solution · vkev
Verified scans run this check after you prove you own the site.
All known CVEsView the checks catalogNational Vulnerability Database
Scan a website