Event Tickets and Registration <= 5.27.5 - Missing Authorization
Event Tickets and Registration
Minimum safe version
5.27.6.1
Update to 5.27.6.1 or later to address 18 fixable vulnerabilities
CVE-2025-62027
CVE-2025-11517
CVE-2025-30794
Event Tickets and Registration <= 5.19.1.1 - Missing Authorization to Ticket Deletion
CVE-2024-13457
Freemius SDK <= 2.4.2 - Missing Authorization Checks
CVE-2024-38762
CVE-2024-2261
CVE-2024-1316
CVE-2024-1053
WordPress Event Tickets Plugin <= 5.5.11.1 is vulnerable to Cross Site Scripting (XSS)
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress Event Tickets plugin <= 4.10.7.1 - CSV Injection vulnerability
WordPress Event Tickets plugin < 5.3.0.1 - Sensitive Information Disclosure vulnerability
WordPress Event Tickets plugin < 5.3.0.1 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability
CVE-2019-16120
CVE-2021-25028