Known Vulnerabilities for Pretix by Rami
Listed below are 3 of the newest known vulnerabilities associated with "Pretix" by "Rami".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-57534 json | Malicious HTML content could be injected into the content of a page in the pretix-pages plugin. | Not Provided | 2026-06-25 | 2026-06-25 |
| CVE-2026-57533 json | Malicious HTML content could be injected into the page pretix shows when redirection to an untrusted page occurs. Since this... | Not Provided | 2026-06-25 | 2026-06-25 |
| CVE-2026-13603 json | The payment integration pretix-oppwa provides support for the payment providers VR Payment, Hobex, and potentially others b... | Not Provided | 2026-07-01 | 2026-07-01 |
| CVE-2026-13602 json | We found a chain of combining multiple weaknesses in the product that could allow an attacker to become any user in the backe... | Not Provided | 2026-07-01 | 2026-07-01 |
| CVE-2026-13314 json | Malicious HTML content could be injected into the content rendered by the pretix-digital plugin. | Not Provided | 2026-06-25 | 2026-06-25 |
| CVE-2026-13225 json | Malicious HTML content could be injected into the email address of an order, which pretix showed without sanitization on the... | Not Provided | 2026-06-25 | 2026-06-25 |
| CVE-2026-9712 json | When creating an export through the pretix API, API clients are returned an UUID value for their export job (a long, random ... | Not Provided | 2026-05-27 | 2026-05-27 |
| CVE-2023-44464 json | pretix before 2023.7.2 allows Pillow to parse EPS files. | 7.8 - HIGH | 2023-09-29 | 2023-10-12 |
| CVE-2023-44463 json | An issue was discovered in pretix before 2023.7.1. Incorrect parsing of configuration files causes the application to trust u... | 5.3 - MEDIUM | 2023-10-02 | 2023-10-04 |
| CVE-2023-27891 json | rami.io pretix before 4.17.1 allows OAuth application authorization from a logged-out session. The fixed versions are 4.15.1,... | 7.5 - HIGH | 2023-03-06 | 2023-03-14 |