Home

Description

The My Tickets – Accessible Event Ticketing plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 2.0.16. This is due to the mt_save_profile() function not appropriately restricting access to unauthorized users to update roles. This makes it possible for authenticated attackers, with Subscriber-level access and above, to update their role to that of an administrator.

PUBLISHED Reserved 2025-04-17 | Published 2025-04-24 | Updated 2026-04-08 | Assigner Wordfence




HIGH: 8.8CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Problem types

CWE-269 Improper Privilege Management

Product status

Default status
unaffected

Any version
affected

Timeline

2025-04-23:Disclosed

Credits

ngocanh le finder

References

www.wordfence.com/...-3d8a-4f82-bea3-1c46b5045d94?source=cve

plugins.trac.wordpress.org/...y-tickets/trunk/my-tickets.php

cve.org (CVE-2025-3761)

nvd.nist.gov (CVE-2025-3761)

Download JSON