Showing 1 vulnerability on this page for pretix-girosolution

Signals CISA KEV Ransomware Nuclei
pretix GmbH vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Insufficient validation of payment status in pretix-girosolution

Our payment integration with GiroCheckout did not properly validate payment status responses. An attacker could use a successful payment status response from one payment and supply it to the system for a different payment, gaining access to multiple valid tickets with only one payment.

CWE-841Jul 28, 2026
CVSS6.3v4.0EPSS0.207%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX