Vulnerabilities / Tickera – Sell Tickets & Manage Events
Tickera – Sell Tickets & Manage Events vulnerabilities
Advisories WPSec published for Tickera – Sell Tickets & Manage Events. Other sources may list more. Its attack surface: Tickera – Sell Tickets & Manage Events on WPSec AttackSurface.
| Published | ID | Vulnerability | Severity | Fixed in |
|---|---|---|---|---|
| 2026-10-07 | WPSEC-2026-0525 | Tickera – Sell Tickets & Manage Events <= 3.6.0.6 - Unauthenticated Payment Bypass via 2Checkout IPN Handler | Medium 5.9 | 3.6.0.7 |
| 2026-10-07 | WPSEC-2026-0524 | Tickera – Sell Tickets & Manage Events <= 3.6.0.6 - Unauthenticated Sales API Authentication Bypass via Empty API Key | Medium 5.3 | 3.6.0.7 |
| 2026-10-07 | WPSEC-2026-0523 | Tickera – Sell Tickets & Manage Events <= 3.6.0.6 - Unauthenticated SQL Injection via Sales API 'period_compare' Parameter | High 7.5 | 3.6.0.7 |
License: CC BY 4.0