CVE-2026-32354

WordPress WpEvently plugin < 5.1.9 - Sensitive Data Exposure vulnerability

Insertion of Sensitive Information Into Sent Data vulnerability in magepeopleteam WpEvently mage-eventpress allows Retrieve Embedded Sensitive Data.This issue affects WpEvently: from n/a through < 5.1.9.


We have discovered 992 live websites that are affected by CVE-2026-32354.

Run a Free Instant Scan




Affected Software

Product  Mage Eventpress
Category Wordpress Plugins
Vulnerable Domains992 live websites (100% of Mage Eventpress install base)
Vulnerable Versions
  • from 0 through 5.1.9
Vulnerable Versions Count3 versions ( 100% of all versions)



Details

  • Published - Mar 13, 2026
  • Updated - Apr 1, 2026

Credits

  • Bao - BlueRock | Patchstack Bug Bounty Program (finder)

Website Distribution by Country

Number of websites using CVE-2026-32354
United States310 websites



Germany107 websites
GB91 websites
France51 websites
Netherlands49 websites
Canada40 websites
Italy40 websites
Australia29 websites
South Africa26 websites
Belgium24 websites

Website Distribution by TLD

Number of websites using CVE-2026-32354
.com369 websites
.org120 websites
.de69 websites
.co.uk53 websites
.nl48 websites
.it28 websites
.ca21 websites
.ch21 websites
.com.au21 websites
.fr20 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2026-32354

Top websites that are affected by CVE-2026-32354. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
***********.**.gov United States***,***
*******.de Germany***,***
********************.org United States***,***
***.****.fr France***,***
**********************.ca Canada***,***
***************.org Germany***,***
***********.***.uk GB***,***
*****.***.au Australia***,***
***********.com France***,***
*********.com GB***,***
See full domain list

FAQ

A total of 992 websites have been identified as vulnerable to CVE-2026-32354, based on global website indexing conducted by WebTechSurvey.
The Mage Eventpress is affected by the CVE-2026-32354 vulnerability.
Mage Eventpress versions up to and including 5.1.9 are vulnerable to CVE-2026-32354.