Wpchill · Wpchill Rsvp/Event Management Plugin · CVE-2025-24683
**Name of the Vulnerable Software and Affected Versions**
WPChill RSVP and Event Management Plugin versions n/a through 2.7.14
**Description**
The issue is related to an SQL Injection vulnerability due to improper neutralization of special elements used in an SQL command. This allows for SQL Injection attacks.
**Recommendations**
For WPChill RSVP and Event Management Plugin versions n/a through 2.7.14, update to a version later than 2.7.14 to resolve the issue.
At the moment, there is no information about additional mitigation measures for this specific vulnerability.