Description
WordPress Plugin Tickera-WordPress Event Ticketing is prone to a cross-site request forgery vulnerability. Exploiting this issue may allow a remote attacker to perform certain administrative actions and gain unauthorized access to the affected application; other attacks are also possible. WordPress Plugin Tickera-WordPress Event Ticketing version 3.5.1.0 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 3.5.1.1 or latest
References
Related Vulnerabilities
WebLogic CVE-2017-3506 Vulnerability (CVE-2017-3506)
WebLogic CVE-2021-2108 Vulnerability (CVE-2021-2108)
Atlassian Jira CVE-2021-39122 Vulnerability (CVE-2021-39122)
MySQL CVE-2022-21425 Vulnerability (CVE-2022-21425)
WordPress Plugin Integration for Contact Form 7 and Zoho Cross-Site Scripting (1.1.7)