CVE-2024-12578

CVSS V2 None CVSS V3 None
Description
The Tickera – WordPress Event Ticketing plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 3.5.4.8 via the 'tickera_tickets_info' endpoint. This makes it possible for unauthenticated attackers to extract sensitive data from bookings like full names, email addresses, check-in/out timestamps and more.
Overview
  • CVE ID
  • CVE-2024-12578
  • Assigner
  • Wordfence
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-12-14T04:23:39.780Z
  • Last Modified Date
  • 2024-12-14T04:23:39.780Z
History
Created Old Value New Value Data Type Notes
2024-12-14 13:58:25 Added to TrackCVE