Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
The vulnerabilities have been fixed by Crocantickets team in versions 20260409151659 y 20260409153543.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 01 Oct 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 01 Oct 2026 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | CVE-2026-7175: the Business Name parameter in the /promoters/edit endpoint of the My Profile section of a promoter’s profile, which allows the injection of JavaScript code that will execute on the promoter’s public page; | |
| Title | Multiple vulnerabilities in Entradium by Crocantickets | |
| First Time appeared |
Crocantickets
Crocantickets entradium |
|
| Weaknesses | CWE-79 | |
| CPEs | cpe:2.3:a:crocantickets:entradium:versions_before_20260409151659_and_20260409153543.:*:*:*:*:*:*:* | |
| Vendors & Products |
Crocantickets
Crocantickets entradium |
|
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2026-10-01T19:19:38.755Z
Reserved: 2026-04-27T07:58:54.274Z
Link: CVE-2026-7175
Updated: 2026-10-01T19:19:26.661Z
Status : Deferred
Published: 2026-10-01T10:17:16.963
Modified: 2026-10-01T20:17:31.133
Link: CVE-2026-7175
No data.
OpenCVE Enrichment
Updated: 2026-10-01T18:45:06Z
