Cross-Site request forgery (CSRF) vulnerability in Magepeople inc. WpEvently allows Cross Site Request Forgery.
This issue affects WpEvently: from n/a through 4.1.2.
Update the WordPress Event Manager for WooCommerce plugin to the latest available version (at least 4.1.3).