Missing Authorization Vulnerability in StellarWP Event Tickets Product
CVE-2025-62027
5.4MEDIUM
What is CVE-2025-62027?
A missing authorization vulnerability exists in the StellarWP Event Tickets plugin, affecting versions from n/a through 5.26.3. This flaw can allow unauthorized users to access sensitive functionalities, leading to potential manipulation of event details and ticket management. It is crucial for users of the Event Tickets plugin to evaluate their security posture and ensure they are running the latest, patched versions to mitigate any risks associated with this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Event Tickets <= n/a
References
CVSS V3.1
Score:
5.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
n0_arafat_n0 (Patchstack Alliance)