Relative Path Traversal Vulnerability in Themewinter Eventin Plugin
CVE-2025-47445
7.5HIGH
What is CVE-2025-47445?
A relative path traversal vulnerability in the Themewinter Eventin plugin allows attackers to manipulate file paths in order to access sensitive files on the server. This issue affects multiple versions of the Eventin plugin, including version 4.0.26, potentially enabling unauthorized access to system files through crafted URL requests.
Affected Version(s)
Eventin <= 4.0.26