Vulnerability in Event Tickets and Registration — CVE-2026-105893
MediumSeverity
0.3%Estimated exploit probability
90,000+ sitesInstalls
5.30.0.2Fixed in
What to do now
Update Event Tickets and Registration to 5.30.0.2 or later.
Affected versions
- Everything up to and including 5.30.0.1
Affected: Event Tickets and Registration (plugin, event-tickets)
What the vulnerability is
The Event Tickets and Registration plugin for WordPress is vulnerable to unauthorized access in all versions up to, and including, 5.30.0.1. This is due to a missing capability check on a function. This makes it possible for unauthenticated attackers to perform an unauthorized action.