CVE-2016-10763: XSS
The CampTix Event Ticketing plugin before 1.5 for WordPress allows XSS in the admin section via a ticket title or body.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2016-10763?
CVE-2016-10763 is a vulnerability in the CampTix Event Ticketing plugin for WordPress that allows XSS attacks in the admin section.
How severe is CVE-2016-10763?
CVE-2016-10763 has a severity rating of medium with a score of 4.8 out of 10.
How does CVE-2016-10763 affect WordPress websites?
CVE-2016-10763 affects WordPress websites that have the CampTix Event Ticketing plugin installed with a version before 1.5.0.
What is the recommended fix for CVE-2016-10763?
To fix CVE-2016-10763, it is recommended to update the CampTix Event Ticketing plugin to version 1.5.0 or higher.
Where can I find more information about CVE-2016-10763?
More information about CVE-2016-10763 can be found on the HackerOne report (https://hackerone.com/reports/152958) and the official WordPress plugin page (https://wordpress.org/plugins/camptix/#developers).