A vulnerability was found in Syed Balkhi Sugar Calendar Plugin up to 3.10.1 on WordPress. It has been declared as critical. The affected element is an unknown function. Such manipulation leads to missing authorization.
This vulnerability is documented as CVE-2026-24636. The attack can be executed remotely. There is not any exploit available.