Vulnerabilities > Theeventscalendar > Event Tickets > Medium

DATE CVE VULNERABILITY TITLE RISK
2025-02-21 CVE-2025-1402 Missing Authorization vulnerability in Theeventscalendar Event Tickets
The Event Tickets and Registration plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the 'ajax_ticket_delete' function in all versions up to, and including, 5.19.1.1.
network
low complexity
theeventscalendar CWE-862
5.3