All 6 CVE vulnerabilities found in Event Tickets and Registration, with AI-generated Chinese analysis, references, and POCs.
Vendor: stellarwp
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-11517 | Event Tickets and Registration <= 5.26.5 - Unauthenticated Ticket Payment Bypass CWE-639 | 7.5 | High | 2025-10-18 |
| CVE-2025-1402 | Event Tickets and Registration <= 5.19.1.1 - Missing Authorization to Ticket Deletion CWE-862 | 5.3 | Medium | 2025-02-21 |
| CVE-2024-13457 | Event Tickets <= 5.18.1 - Insecure Direct Object Reference to Sensitive Information Exposure CWE-284 | 5.3 | Medium | 2025-01-30 |
| CVE-2024-2261 | Event Tickets and Registration <= 5.8.2 - Improper Authorization to Information Disclosure CWE-639 | 4.3 | Medium | 2024-04-09 |
| CVE-2024-1316 | Event Tickets and Registration < 5.8.1 - Contributor+ Arbitrary Events Access | 4.3AI | MediumAI | 2024-03-04 |
| CVE-2024-1053 | Event Tickets and Registration <= 5.8.1 - Missing Authorization CWE-284 | 4.3 | Medium | 2024-02-22 |
All 6 known CVE vulnerabilities affecting Event Tickets and Registration with full Chinese analysis, references, and POCs where available.