CVE-2026-59557

WordPress Events Made Easy plugin <= 3.1.3 - Broken Access Control vulnerability

Unauthenticated Broken Access Control in Events Made Easy <= 3.1.3 versions.


We have discovered 1,177 live websites that are affected by CVE-2026-59557.

Run a Free Instant Scan




Affected Software

Product  Events Made Easy
Category Wordpress Plugins
Vulnerable Domains1,177 live websites (100% of Events Made Easy install base)
Vulnerable Versions
  • from 0 through 3.1.3
Vulnerable Versions Count154 versions ( 99% of all versions)


Common Weakness Enumeration

CWE-862 Missing Authorization



Details

  • Published - Jul 27, 2026
  • Updated - Jul 27, 2026

Credits

  • HieuPenguinnn | Patchstack Bug Bounty Program (finder)

Website Distribution by Country

Number of websites using CVE-2026-59557
United States291 websites



Germany410 websites
Netherlands78 websites
France59 websites
GB44 websites
Switzerland41 websites
Austria33 websites
Italy27 websites
Denmark25 websites
Sweden15 websites

Website Distribution by TLD

Number of websites using CVE-2026-59557
.de336 websites
.com198 websites
.org129 websites
.nl72 websites
.at45 websites
.ch41 websites
.fr30 websites
.co.uk23 websites
.it22 websites
.be18 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2026-59557

Top websites that are affected by CVE-2026-59557. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
**********.hu Hungary**,***
********.********.gov United States***,***
**********.be United States***,***
*********.org Germany***,***
*********.********.gov United States***,***
************.de Germany***,***
*****.de Germany***,***
****.********.gov United States***,***
**********.com United States***,***
***.nrw Germany***,***
See full domain list

FAQ

CVE-2026-59557 is Missing Authorization in Events Made Easy
A total of 1,177 websites have been identified as vulnerable to CVE-2026-59557, based on global website indexing conducted by WebTechSurvey.
The Events Made Easy is affected by the CVE-2026-59557 vulnerability.
Events Made Easy versions up to and including 3.1.3 are vulnerable to CVE-2026-59557.