A vulnerability, which was classified as problematic, was found in arraytics Eventin Plugin up to 4.1.8 on WordPress. Impacted is the function get_item_permissions_check. Such manipulation leads to missing authorization.

This vulnerability is documented as CVE-2026-4109. The attack can be executed remotely. There is not any exploit available.