pretix-mollie是德国pretix公司的一款与pretix票务平台集成的支付插件。 pretix-mollie 2.5.6之前版本存在处理逻辑错误漏洞,该漏洞源于支付集成模块未正确验证支付状态响应,可能导致攻击者使用一次支付的成功状态响应获取多个有效门票。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| pretix | pretix-mollie | < 2.5.6 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| pretix | pretix-mollie | 0 ~ 2.5.6 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-57532 | pretix 跨站脚本漏洞 | |
| CVE-2026-57535 | pretix 跨站脚本漏洞 | |
| CVE-2026-57534 | Stored XSS in pretix-pages | |
| CVE-2026-57533 | pretix 跨站脚本漏洞 | |
| CVE-2026-13222 | Insufficient validation of payment status in pretix-oppwa | |
| CVE-2026-13225 | Stored XSS in ticket confirmation page | |
| CVE-2026-13223 | Insufficient validation of payment status in pretix-computop | |
| CVE-2026-13350 | venueless 授权问题漏洞 | |
| CVE-2026-13314 | Stored XSS in pretix-digital |
No comments yet