A vulnerability labeled as problematic has been found in magepeopleteam Event Booking Manager Plugin up to 5.3.7 on WordPress. Affected by this issue is some unknown functionality. Such manipulation leads to authorization bypass.

This vulnerability is traded as CVE-2026-17166. The attack may be launched remotely. There is no exploit available.