CVE-2026-14823

CVE-2026-14823CVE-2026-14823

Description

The Event Tickets and Registration WordPress plugin before 5.29.0.1 does not properly verify authorization on some of its seating actions, allowing users with contributor-level access and above to overwrite the seating layout, ticket inventory, and attendee seat assignments of events they do not own.

Scoring

Last modified2026-08-01
Sourced from NVD. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.