
Events Manager < 7.4.1 - Unauthenticated Privilege Escalation to Administrator PoC: https://github.com/Nxploited/CVE-2026-18366 #exploit #wordpress
Post summary
A PoC for CVE‑2026‑18366 that enables unauthenticated privilege escalation in Events Manager <7.4.1 has been shared, with no evidence of active exploitation or a patch.

