Vollstart
vollstart
4 CVEs • 1 product
Products (1)
Click to collapseToggle
Products (1)
Click to collapse
CVEs (4)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Vollstart 1Event Tickets With Ticket Scanner Jun 17, 2026 May 15, 2025 N/A· v4 3.5 LOW· v3 N/A· v2 The Event Tickets with Ticket Scanner WordPress plugin before 2.3.8 does not sanitise and escape some parameters, which could allow users with a role as low as admin to perform Cross-Site Scripting attacks |
1Vollstart 1Event Tickets With Ticket Scanner Jun 17, 2026 Mar 28, 2025 N/A· v4 4.3 MEDIUM· v3 N/A· v2 The Event Tickets with Ticket Scanner WordPress plugin before 2.5.4 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack |
1Vollstart 1Event Tickets With Ticket Scanner Jun 17, 2026 Nov 18, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 Deserialization of Untrusted Data vulnerability in Vollstart Event Tickets with Ticket Scanner event-tickets-with-ticket-scanner allows Server Side Include (SSI) Injection.This issue affects Event Tickets with Ticket Sca...Show more |
1Vollstart 1Event Tickets With Ticket Scanner Jun 17, 2026 Jun 4, 2024 N/A· v4 6.1 MEDIUM· v3 N/A· v2 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Saso Nikolov Event Tickets with Ticket Scanner allows Reflected XSS.This issue affects Event Tickets with Ticke...Show more |