cleantalk
Vulnerabilities and Security Researches

Event Tickets and Registration, CVE-2025-30794

CVE, Research URL

CVE-2025-30794

Published on
Apr 01, 2025
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in StellarWP Event Tickets event-tickets allows Reflected XSS.This issue affects Event Tickets: from n/a through <= 5.20.0.
Affected versions
max 5.20.1.
Status
vulnerable