0.001 Low
EPSS
Percentile
27.7%
The plugin does not have CSRF checks when deleting events and locations, which could allow attackers to make logged in admins perform such actions via CSRF attacks