Showing 1 vulnerability on this page for tickets

Signals CISA KEV Ransomware Nuclei
SPIP vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

SPIP tickets < 4.3.3 Unauthenticated RCE

The SPIP tickets plugin versions prior to 4.3.3 contain an unauthenticated remote code execution vulnerability in the forum preview handling for public ticket pages. The plugin appends untrusted request parameters into HTML that is later rendered by a template using unfiltered environment rendering (#ENV**), which disables SPIP output filtering. As a result, an unauthenticated attacker can inject crafted content that is evaluated through SPIP's template processing chain, leading to execution of

CWE-94Feb 25, 2026
CVSS9.3v4.0EPSS0.908%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX