CVE Database
/

CVE-2021-25028

Back to search

CVE-2021-25028

Published: Jan 24, 2022

Modified: Aug 3, 2024

PUBLISHED

Description

The Event Tickets WordPress plugin before 5.2.2 does not validate the tribe_tickets_redirect_to parameter before redirecting the user to the given value, leading to an arbitrary redirect issue

VendorProductVersions

Unknown

Event Tickets

affected
5.2.2 - < 5.2.2

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now