Missing Authorization Vulnerability in Liquid Web Event Tickets Plugin
CVE-2026-105888
5.4MEDIUM
What is CVE-2026-105888?
A missing authorization vulnerability exists in the Liquid Web Event Tickets plugin that can lead to improperly configured access control security levels. This issue compromises the intended restrictions, allowing potential unauthorized access to sensitive functionalities within the plugin. Affected versions include various releases up to 5.30.0.1, highlighting the need for users to ensure their installations are up to date to mitigate risks.
Affected Version(s)
Event Tickets 0 <= 5.30.0.1