CVE-2024-6711
The Event Tickets with Ticket Scanner WordPress plugin before 2.3.8 does not sanitise and escape some parameters, which
The Event Tickets with Ticket Scanner WordPress plugin before 2.3.8 does not sanitise and escape some parameters, which could allow users with a role as low as admin to perform Cross-Site Scripting attacks.
LOW · CVSS 3.5
EPSS 0.00267
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0