High severity8.8NVD Advisory· Published Sep 8, 2019· Updated Jun 17, 2026
CVE-2019-16120
CVE-2019-16120
Description
CSV injection in the event-tickets (Event Tickets) plugin before 4.10.7.2 for WordPress exists via the "All Post> Ticketed > Attendees" Export Attendees feature.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- WordPress/event-ticketsdescription
- Range: <4.10.7.2
Patches
Vulnerability mechanics
References
3- www.exploit-db.com/exploits/47335nvdExploitThird Party AdvisoryVDB Entry
- wpvulndb.com/vulnerabilities/9858nvdThird Party Advisory
- wordpress.org/plugins/event-tickets/nvdProductRelease Notes
News mentions
0No linked articles in our index yet.