CYBERHAWK / CVE / CVE-2026-41471

CVE-2026-41471

Easy PayPal Events WordPress Plugin

HIGH CVSS 7.5 vibe oss

The flaw

Information disclosure allowing enumeration of all customer order records via QR endpoint.

What to do

Remove plugin or update to patched version

▸ Scan my repo for CVE-2026-41471

References

First seen 2026-05-08 · Tracked by PickBits CyberHawk · Weekly CVE digest