Pricing
Case studies
Login
Start trial
Event Tickets
StellarWP
Developer
5.27.5
Latest version
90,000
Installations
No date
Last updated
WordPress Plugin
Active VDP
Report vulnerability
Vulnerabilities
Security Policy
Security Contributors
Vulnerability history
0 present
14 patched
3 Mitigation rules
Unauthenticated Ticket Payment Bypass vulnerability
<= 5.26.5
18/10/2025
Broken Access Control vulnerability
<= 5.26.3
16/10/2025
Reflected Cross Site Scripting (XSS) vulnerability
<= 5.20.0
27/03/2025
Missing Authorization to Ticket Deletion vulnerability
<= 5.19.1.1
20/02/2025
Insecure Direct Object Reference to Sensitive Information Exposure vulnerability
<= 5.18.1
30/01/2025
Cross Site Request Forgery (CSRF) vulnerability
<= 5.11.0.4
12/07/2024
Improper Authorization to Information Disclosure
<= 5.8.2
26/03/2024
Contributor+ Arbitrary Events Access vulnerability
< 5.8.1
05/03/2024
Missing Authorization vulnerability
<= 5.8.1
22/02/2024
Reflected Cross Site Scripting (XSS) vulnerability
<= 5.5.11.1
19/07/2023
Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability
< 5.3.0.1
28/02/2022
Sensitive Information Disclosure vulnerability
< 5.3.0.1
28/02/2022
Open Redirect vulnerability
<= 5.2.1
22/12/2021
CSV Injection vulnerability
<= 4.10.7.1
03/09/2019