Skip to content
CVE / MITRECVE Recent··1 min read

CVE-2026-13755 - Tickera <= 3.6.0.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'price_wrapper' Shortcode Attribute

CVE ID :CVE-2026-13755 Published : July 16, 2026, 7:51 a. m. | 1 hour, 7 minutes ago Description :The Tickera – Sell Tickets & Manage Events plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'price_wrapper' Shortcode Attribute in all versions up to, and including, 3.

6. 0. 0 due to insufficient input sanitization and output escaping.

Originally reported by CVE Recent
0 comments

0 comments

Posting as StoicFalcon709
0/1000

No comments yet. Be the first to start the discussion.